Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-05-12 CVE-2022-29745 SQL Injection vulnerability in Money Transfer Management System Project Money Transfer Management System 1.0
Money Transfer Management System 1.0 is vulnerable to SQL Injection via \mtms\classes\Master.php?f=delete_transaction.
network
low complexity
money-transfer-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29746 SQL Injection vulnerability in Money Transfer Management System Project Money Transfer Management System 1.0
Money Transfer Management System 1.0 is vulnerable to SQL Injection via /mtms/classes/Users.php?f=delete.
network
low complexity
money-transfer-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29998 SQL Injection vulnerability in Insurance Management System Project Insurance Management System 1.0
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/clientStatus.php?client_id=.
network
low complexity
insurance-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29999 SQL Injection vulnerability in Insurance Management System Project Insurance Management System 1.0
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editClient.php?client_id=.
network
low complexity
insurance-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-30000 SQL Injection vulnerability in Insurance Management System Project Insurance Management System 1.0
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editPayment.php?recipt_no=.
network
low complexity
insurance-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-30001 SQL Injection vulnerability in Insurance Management System Project Insurance Management System 1.0
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editAgent.php?agent_id=.
network
low complexity
insurance-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-30002 SQL Injection vulnerability in Insurance Management System Project Insurance Management System 1.0
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=.
7.2
2022-05-12 CVE-2022-29747 SQL Injection vulnerability in Simple Client Management System Project Simple Client Management System 1.0
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/manage_invoice&id= // Leak place ---> id.
network
low complexity
simple-client-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29748 SQL Injection vulnerability in Simple Client Management System Project Simple Client Management System 1.0
Simple Client Management System 1.0 is vulnerable to SQL Injection via \cms\admin?page=client/manage_client&id=.
network
low complexity
simple-client-management-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29749 SQL Injection vulnerability in Simple Client Management System Project Simple Client Management System 1.0
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice.
network
low complexity
simple-client-management-system-project CWE-89
critical
9.8