Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-09-22 CVE-2024-9078 SQL Injection vulnerability in Code-Projects Student Record System 1.0
A vulnerability has been found in code-projects Student Record System 1.0 and classified as critical.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-20 CVE-2024-9041 SQL Injection vulnerability in Mayurik Best House Rental Management System 1.0
A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as critical.
network
low complexity
mayurik CWE-89
8.8
2024-09-20 CVE-2024-9039 SQL Injection vulnerability in Mayurik Best House Rental Management System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Best House Rental Management System 1.0.
network
low complexity
mayurik CWE-89
critical
9.8
2024-09-20 CVE-2024-9011 SQL Injection vulnerability in Code-Projects Crud Operation System 1.0
A vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-20 CVE-2024-9009 SQL Injection vulnerability in Fabianros Online Quiz Site 1.0
A vulnerability, which was classified as critical, has been found in code-projects Online Quiz Site 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-09-19 CVE-2024-9008 SQL Injection vulnerability in Best Online News Portal Project Best Online News Portal 1.0
A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0.
network
low complexity
best-online-news-portal-project CWE-89
critical
9.8
2024-09-19 CVE-2024-46382 SQL Injection vulnerability in Linlinjava Litemall 1.8.0
A SQL injection vulnerability in linlinjava litemall 1.8.0 allows a remote attacker to obtain sensitive information via the goodsId, goodsSn, and name parameters in AdminGoodscontroller.java.
network
low complexity
linlinjava CWE-89
7.5
2024-09-18 CVE-2022-25775 SQL Injection vulnerability in Acquia Mautic
Prior to the patched version, logged in users of Mautic are vulnerable to an SQL injection vulnerability in the Reports bundle. The user could retrieve and alter data like sensitive data, login, and depending on database permission the attacker can manipulate file systems.
network
low complexity
acquia CWE-89
7.2
2024-09-18 CVE-2024-5958 SQL Injection vulnerability in Elizsoftware Panel
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eliz Software Panel allows Command Line Execution through SQL Injection.This issue affects Panel: before v2.3.24.
network
low complexity
elizsoftware CWE-89
8.8
2024-09-17 CVE-2024-43976 SQL Injection vulnerability in Superstorefinder Super Store Finder
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in highwarden Super Store Finder allows SQL Injection.This issue affects Super Store Finder: from n/a through 6.9.7.
network
low complexity
superstorefinder CWE-89
critical
9.8