Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2017-12-13 CVE-2017-17642 SQL Injection vulnerability in Basic JOB Site Script Project Basic JOB Site Script 2.0.5
Basic Job Site Script 2.0.5 has SQL Injection via the keyword parameter to /job.
network
low complexity
basic-job-site-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17641 SQL Injection vulnerability in Resume Clone Script Project Resume Clone Script 2.0.5
Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter.
network
low complexity
resume-clone-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17640 SQL Injection vulnerability in Advanced World Database Project Advanced World Database 2.0.5
Advanced World Database 2.0.5 has SQL Injection via the city.php country or state parameter, or the state.php country parameter.
network
low complexity
advanced-world-database-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17639 SQL Injection vulnerability in Muslim Matrimonial Script Project Muslim Matrimonial Script 3.02
Muslim Matrimonial Script 3.02 has SQL Injection via the success-story.php succid parameter.
network
low complexity
muslim-matrimonial-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17638 SQL Injection vulnerability in Groupon Clone Script Project Groupon Clone Script 3.01
Groupon Clone Script 3.01 has SQL Injection via the city_ajax.php state_id parameter.
network
low complexity
groupon-clone-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17637 SQL Injection vulnerability in CAR Rental Script Project CAR Rental Script 2.0.4
Car Rental Script 2.0.4 has SQL Injection via the countrycode1.php val parameter.
network
low complexity
car-rental-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17636 SQL Injection vulnerability in MLM Forced Matrix Project MLM Forced Matrix 2.0.9
MLM Forced Matrix 2.0.9 has SQL Injection via the news-detail.php newid parameter.
network
low complexity
mlm-forced-matrix-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17635 SQL Injection vulnerability in MLM Forex Market Plan Script Project MLM Forex Market Plan Script 2.0.4
MLM Forex Market Plan Script 2.0.4 has SQL Injection via the news_detail.php newid parameter or the event_detail.php eventid parameter.
network
low complexity
mlm-forex-market-plan-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17634 SQL Injection vulnerability in Single Theater Booking Script Project Single Theater Booking Script 3.2.1
Single Theater Booking Script 3.2.1 has SQL Injection via the findcity.php q parameter.
network
low complexity
single-theater-booking-script-project CWE-89
critical
9.8
2017-12-13 CVE-2017-17633 SQL Injection vulnerability in Multiplex Movie Theater Booking Script Project Multiplex Movie Theater Booking Script 3.1.5
Multiplex Movie Theater Booking Script 3.1.5 has SQL Injection via the trailer-detail.php moid parameter, show-time.php moid parameter, or event-detail.php eid parameter.
network
low complexity
multiplex-movie-theater-booking-script-project CWE-89
critical
9.8