Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-09-02 CVE-2022-36636 SQL Injection vulnerability in Garage Management System Project Garage Management System 1.0
Garage Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /print.php.
network
low complexity
garage-management-system-project CWE-89
8.8
2022-09-02 CVE-2022-36594 SQL Injection vulnerability in Mybatis Mapper
Mapper v4.0.0 to v4.2.0 was discovered to contain a SQL injection vulnerability via the ids parameter at the selectByIds function.
network
low complexity
mybatis CWE-89
critical
9.8
2022-09-02 CVE-2022-36759 SQL Injection vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
Online Food Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the component /dishes.php?res_id=.
network
low complexity
online-food-ordering-system-project CWE-89
critical
9.8
2022-09-01 CVE-2022-36674 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/view_schedule.php.
7.2
2022-09-01 CVE-2022-36675 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/manage_schedule.php.
7.2
2022-09-01 CVE-2022-36676 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /categories/view_category.php.
7.2
2022-08-31 CVE-2022-36201 SQL Injection vulnerability in Doctor'S Appointment System Project Doctor'S Appointment System 1.0
Doctor’s Appointment System v1.0 is vulnerable to Blind SQLi via settings.php.
network
low complexity
doctor-s-appointment-system-project CWE-89
critical
9.8
2022-08-31 CVE-2022-36581 SQL Injection vulnerability in Online Ordering System Project Online Ordering System 2.3.2
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via the user_email parameter at /admin/login.php.
network
low complexity
online-ordering-system-project CWE-89
7.5
2022-08-31 CVE-2022-38812 SQL Injection vulnerability in Aerocms Project Aerocms 0.1.1
AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter.
network
low complexity
aerocms-project CWE-89
6.5
2022-08-30 CVE-2022-36730 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /librarian/delete.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8