Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-06-12 CVE-2024-5893 SQL Injection vulnerability in Oretnom23 CAB Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Cab Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-06-12 CVE-2024-5894 SQL Injection vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-06-12 CVE-2024-5895 SQL Injection vulnerability in Oretnom23 Employee and Visitor Gate Pass Logging System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-06-12 CVE-2024-1576 SQL Injection vulnerability in Megabip 4.36.2
SQL Injection vulnerability in MegaBIP software allows attacker to obtain site administrator privileges, including access to the administration panel and the ability to change the administrator password. This issue affects MegaBIP software versions through 5.09.
network
low complexity
megabip CWE-89
critical
9.8
2024-06-12 CVE-2024-4845 SQL Injection vulnerability in Icegram Express
The Icegram Express plugin for WordPress is vulnerable to SQL Injection via the ‘options[list_id]’ parameter in all versions up to, and including, 5.7.22 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
low complexity
icegram CWE-89
8.8
2024-06-10 CVE-2024-36411 SQL Injection vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-89
8.8
2024-06-10 CVE-2024-36412 SQL Injection vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-89
critical
9.8
2024-06-10 CVE-2024-36409 SQL Injection vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-89
8.8
2024-06-10 CVE-2024-36410 SQL Injection vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-89
8.8
2024-06-10 CVE-2024-36408 SQL Injection vulnerability in Salesagility Suitecrm
SuiteCRM is an open-source Customer Relationship Management (CRM) software application.
network
low complexity
salesagility CWE-89
8.8