Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-09-08 CVE-2024-8568 SQL Injection vulnerability in Project Team Tmall Demo
A vulnerability, which was classified as critical, was found in Mini-Tmall up to 20240901.
network
low complexity
project-team CWE-89
critical
9.8
2024-09-08 CVE-2024-8567 SQL Injection vulnerability in Payroll Management System Project Payroll Management System 1.0
A vulnerability, which was classified as critical, has been found in itsourcecode Payroll Management System 1.0.
network
low complexity
payroll-management-system-project CWE-89
critical
9.8
2024-09-07 CVE-2024-8565 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 2.0
A vulnerability was found in SourceCodesters Clinics Patient Management System 2.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2024-09-07 CVE-2024-8564 SQL Injection vulnerability in Rems PHP Crud 1.0
A vulnerability was found in SourceCodester PHP CRUD 1.0.
network
low complexity
rems CWE-89
8.8
2024-09-07 CVE-2024-8561 SQL Injection vulnerability in Rems PHP Crud 1.0
A vulnerability has been found in SourceCodester PHP CRUD 1.0 and classified as critical.
network
low complexity
rems CWE-89
critical
9.8
2024-09-07 CVE-2024-8559 SQL Injection vulnerability in Remyandrade Online Food Menu 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Online Food Menu 1.0.
network
low complexity
remyandrade CWE-89
7.2
2024-09-07 CVE-2024-8560 SQL Injection vulnerability in Oretnom23 Simple Invoice Generator System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Simple Invoice Generator System 1.0.
network
low complexity
oretnom23 CWE-89
8.8
2024-09-07 CVE-2024-8557 SQL Injection vulnerability in Oretnom23 Food Ordering Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Food Ordering Management System 1.0.
network
low complexity
oretnom23 CWE-89
7.5
2024-09-07 CVE-2024-7112 SQL Injection vulnerability in Pinpoint Booking System
The Pinpoint Booking System – #1 WordPress Booking Plugin plugin for WordPress is vulnerable to SQL Injection via the ‘schedule’ parameter in all versions up to, and including, 2.9.9.5.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
low complexity
pinpoint CWE-89
6.5
2024-09-06 CVE-2023-50360 SQL Injection vulnerability in Qnap Video Station
A SQL injection vulnerability has been reported to affect Video Station.
network
low complexity
qnap CWE-89
8.8