Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-08-28 CVE-2022-36706 SQL Injection vulnerability in Ingredients Stock Management System Project Ingredients Stock Management System 1.0
Ingredients Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at /stocks/manage_stockout.php.
network
low complexity
ingredients-stock-management-system-project CWE-89
critical
9.8
2022-08-28 CVE-2022-36708 SQL Injection vulnerability in Library Management System Project Library Management System 1.0
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the Id parameter at /student/bookdetails.php.
network
low complexity
library-management-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36543 SQL Injection vulnerability in Edoc-Doctor-Appointment-System Project Edoc-Doctor-Appointment-System 1.0.1
Edoc-doctor-appointment-system v1.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /patient/doctors.php.
network
low complexity
edoc-doctor-appointment-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36544 SQL Injection vulnerability in Edoc-Doctor-Appointment-System Project Edoc-Doctor-Appointment-System 1.0.1
Edoc-doctor-appointment-system v1.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /patient/booking.php.
network
low complexity
edoc-doctor-appointment-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36545 SQL Injection vulnerability in Edoc-Doctor-Appointment-System Project Edoc-Doctor-Appointment-System 1.0.1
Edoc-doctor-appointment-system v1.0.1 was discovered to contain a SQL injection vulnerability via the id parameter at /patient/settings.php.
network
low complexity
edoc-doctor-appointment-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36529 SQL Injection vulnerability in Kensite CMS Project Kensite CMS 1.0
Kensite CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities via the name and oldname parameters at /framework/mod/db/DBMapper.xml.
network
low complexity
kensite-cms-project CWE-89
8.8
2022-08-26 CVE-2022-36678 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_category.
network
low complexity
simple-task-scheduling-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36679 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=user/manage_user.
network
low complexity
simple-task-scheduling-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36680 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_schedule.
network
low complexity
simple-task-scheduling-system-project CWE-89
critical
9.8
2022-08-26 CVE-2022-36681 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_account.
network
low complexity
simple-task-scheduling-system-project CWE-89
critical
9.8