Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-26 | CVE-2022-29683 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/page_del. | 7.2 |
2022-05-26 | CVE-2022-29684 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/Label/js_del. | 7.2 |
2022-05-26 | CVE-2022-29685 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/User/level_sort. | 8.8 |
2022-05-26 | CVE-2022-29686 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/lists/zhuan. | 7.2 |
2022-05-26 | CVE-2022-29687 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/user/level_del. | 7.2 |
2022-05-26 | CVE-2022-29688 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/hy. | 7.2 |
2022-05-26 | CVE-2022-29689 | SQL Injection vulnerability in Chshcms Cscms Music Portal System 4.2 CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/singer/admin/singer/del. | 7.2 |
2022-05-26 | CVE-2021-40317 | SQL Injection vulnerability in Piwigo 11.5.0 Piwigo 11.5.0 is affected by a SQL injection vulnerability via admin.php and the id parameter. | 8.8 |
2022-05-26 | CVE-2022-29721 | SQL Injection vulnerability in 74Cms 74Cmsse 3.5.1 74cmsSE v3.5.1 was discovered to contain a SQL injection vulnerability via the keyword parameter at /home/jobfairol/resumelist. | 7.5 |
2022-05-25 | CVE-2021-35487 | SQL Injection vulnerability in Nokia Broadcast Message Center Nokia Broadcast Message Center through 11.1.0 allows an authenticated user to perform a Boolean Blind SQL Injection attack on the endpoint /owui/block/send-receive-updates (for the Manage Alerts page) via the extIdentifier HTTP POST parameter. | 6.5 |