Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2022-31977 SQL Injection vulnerability in Online Fire Reporting System Project Online Fire Reporting System 1.0
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_team.
network
low complexity
online-fire-reporting-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-31978 SQL Injection vulnerability in Online Fire Reporting System Project Online Fire Reporting System 1.0
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_inquiry.
network
low complexity
online-fire-reporting-system-project CWE-89
critical
9.8
2022-06-01 CVE-2022-24848 SQL Injection vulnerability in Dhis2 Dhis 2
DHIS2 is an information system for data capture, management, validation, analytics and visualization.
network
low complexity
dhis2 CWE-89
8.8
2022-05-26 CVE-2022-30493 SQL Injection vulnerability in Automotive Shop Management System Project Automotive Shop Management System 1.0
In oretnom23 Automotive Shop Management System v1.0, the product id parameter suffers from a blind SQL Injection Vulnerability allowing remote attackers to dump all database credential and gain admin access(privilege escalation).
network
low complexity
automotive-shop-management-system-project CWE-89
critical
9.8
2022-05-26 CVE-2022-30516 SQL Injection vulnerability in Hospital Management System Project Hospital Management System 1.0
In Hospital-Management-System v1.0, the editid parameter in the doctor.php page is vulnerable to SQL injection attacks.
network
low complexity
hospital-management-system-project CWE-89
critical
9.8
2022-05-26 CVE-2022-30500 SQL Injection vulnerability in Jflyfox Jfinal CMS 5.1.0
Jfinal cms 5.1.0 is vulnerable to SQL Injection.
network
low complexity
jflyfox CWE-89
critical
9.8
2022-05-26 CVE-2022-29660 SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del.
network
low complexity
chshcms CWE-89
critical
9.8
2022-05-26 CVE-2022-29661 SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2
CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/save.
network
low complexity
chshcms CWE-89
7.2
2022-05-26 CVE-2022-29662 SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/news/save.
network
low complexity
chshcms CWE-89
7.2
2022-05-26 CVE-2022-29663 SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2
CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/hy.
network
low complexity
chshcms CWE-89
7.2