Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-06-17 CVE-2019-12356 SQL Injection vulnerability in Zzcms 2019
An issue was discovered in zzcms 2019.
network
low complexity
zzcms CWE-89
8.8
2022-06-17 CVE-2019-12357 SQL Injection vulnerability in Zzcms 2019
An issue was discovered in zzcms 2019.
network
low complexity
zzcms CWE-89
7.2
2022-06-17 CVE-2019-12358 SQL Injection vulnerability in Zzcms 2019
An issue was discovered in zzcms 2019.
network
low complexity
zzcms CWE-89
8.8
2022-06-17 CVE-2019-12359 SQL Injection vulnerability in Zzcms 2019
An issue was discovered in zzcms 2019.
network
low complexity
zzcms CWE-89
7.2
2022-06-17 CVE-2021-41408 SQL Injection vulnerability in Voipmonitor 24.61
VoIPmonitor WEB GUI up to version 24.61 is affected by SQL injection through the "api.php" file and "user" parameter.
network
low complexity
voipmonitor CWE-89
critical
9.8
2022-06-17 CVE-2022-31296 SQL Injection vulnerability in Online Discussion Forum Project Online Discussion Forum 1.0
Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/posts/view_post.php.
network
low complexity
online-discussion-forum-project CWE-89
critical
9.8
2022-06-16 CVE-2020-35597 SQL Injection vulnerability in Victor CMS Project Victor CMS 1.0
Victor CMS 1.0 is vulnerable to SQL injection via c_id parameter of admin_edit_comment.php, p_id parameter of admin_edit_post.php, u_id parameter of admin_edit_user.php, and edit parameter of admin_update_categories.php.
network
low complexity
victor-cms-project CWE-89
8.8
2022-06-16 CVE-2021-41487 SQL Injection vulnerability in Nokia Vitalsuite 2020
NOKIA VitalSuite SPM 2020 is affected by SQL injection through UserName'.
network
low complexity
nokia CWE-89
critical
9.8
2022-06-16 CVE-2022-31382 SQL Injection vulnerability in PHPgurukul Directory Management System 1.0
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
network
low complexity
phpgurukul CWE-89
critical
9.8
2022-06-16 CVE-2022-31383 SQL Injection vulnerability in PHPgurukul Directory Management System 1.0
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
network
low complexity
phpgurukul CWE-89
critical
9.8