Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-08-31 CVE-2022-36581 SQL Injection vulnerability in Online Ordering System Project Online Ordering System 2.3.2
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via the user_email parameter at /admin/login.php.
network
low complexity
online-ordering-system-project CWE-89
7.5
2022-08-31 CVE-2022-38812 SQL Injection vulnerability in Aerocms Project Aerocms 0.1.1
AeroCMS 0.1.1 is vulnerable to SQL Injection via the author parameter.
network
low complexity
aerocms-project CWE-89
6.5
2022-08-30 CVE-2022-36730 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /librarian/delete.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36731 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /librarian/delstu.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36732 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /librarian/dele.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36733 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the M_Id parameter at /admin/del.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36734 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /admin/delstu.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36735 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at /admin/delete.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36709 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /staff/edit_book_details.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-30 CVE-2022-36711 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /staff/bookdetails.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8