Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2020-36540 SQL Injection vulnerability in Neetai Tech
A vulnerability, which was classified as critical, was found in Neetai Tech.
network
low complexity
neetai CWE-89
critical
9.8
2022-06-07 CVE-2020-36541 SQL Injection vulnerability in Demokratian
A vulnerability was found in Demokratian.
network
low complexity
demokratian CWE-89
critical
9.8
2022-06-07 CVE-2021-37589 SQL Injection vulnerability in Virtuasoftware Cobranca
Virtua Cobranca before 12R allows SQL Injection on the login page.
network
low complexity
virtuasoftware CWE-89
7.5
2022-06-06 CVE-2022-30927 SQL Injection vulnerability in Simple Task Scheduling System Project Simple Task Scheduling System 1.0
A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database.
network
low complexity
simple-task-scheduling-system-project CWE-89
critical
9.8
2022-06-06 CVE-2022-30469 SQL Injection vulnerability in Afian Filerun 2022.02.02
In Afian Filerun 20220202, lack of sanitization of the POST parameter "metadata[]" in `/?module=fileman&section=get&page=grid` leads to SQL injection.
network
low complexity
afian CWE-89
8.8
2022-06-06 CVE-2022-31768 SQL Injection vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection.
network
low complexity
ibm CWE-89
critical
9.8
2022-06-06 CVE-2021-41932 SQL Injection vulnerability in Wolterskluwer Teammate+ Audit 28.0.19.0
A blind SQL injection vulnerability in search form in TeamMate+ Audit version 28.0.19.0 allows any authenticated user to create malicious SQL injections, which can result in complete database compromise, gaining information about other users, unauthorized access to audit data etc.
network
low complexity
wolterskluwer CWE-89
8.8
2022-06-02 CVE-2022-29704 SQL Injection vulnerability in Browsbox Brows BOX 4.0
BrowsBox CMS v4.0 was discovered to contain a SQL injection vulnerability.
network
low complexity
browsbox CWE-89
critical
9.8
2022-06-02 CVE-2022-31985 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=reports/daily_sales_report&date=.
7.2
2022-06-02 CVE-2022-31986 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=reports/daily_court_rental_report&date=.
7.2