Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-08-27 CVE-2024-7071 SQL Injection vulnerability in Brainlowcode Brain Low-Code
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 564 - SQL Injection: Hibernate vulnerability in Brain Information Technologies Inc.
network
low complexity
brainlowcode CWE-89
critical
9.8
2024-08-26 CVE-2024-42913 SQL Injection vulnerability in Ruoyi 4.7.9
RuoYi CMS v4.7.9 was discovered to contain a SQL injection vulnerability via the job_id parameter at /sasfs1.
network
low complexity
ruoyi CWE-89
critical
9.8
2024-08-26 CVE-2024-45265 SQL Injection vulnerability in Skyss Arfa-Cms
A SQL injection vulnerability in the poll component in SkySystem Arfa-CMS before 5.1.3124 allows remote attackers to execute arbitrary SQL commands via the psid parameter.
network
low complexity
skyss CWE-89
critical
9.8
2024-08-26 CVE-2024-41444 SQL Injection vulnerability in Seacms 12.9
SeaCMS v12.9 has a SQL injection vulnerability in the key parameter of /js/player/dmplayer/dmku/index.php?ac=so.
network
low complexity
seacms CWE-89
critical
9.8
2024-08-26 CVE-2024-8171 SQL Injection vulnerability in Angeljudesuarez Tailoring Management System 1.0
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2024-08-26 CVE-2024-8173 SQL Injection vulnerability in Blood Bank System Project Blood Bank System 1.0
A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0.
network
low complexity
blood-bank-system-project CWE-89
7.5
2024-08-26 CVE-2024-43966 SQL Injection vulnerability in Starkdigital WP Testimonial Widget
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stark Digital WP Testimonial Widget.This issue affects WP Testimonial Widget: from n/a through 3.1.
network
low complexity
starkdigital CWE-89
7.2
2024-08-26 CVE-2024-8167 SQL Injection vulnerability in Fabianros JOB Portal 1.0
A vulnerability was found in code-projects Job Portal 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-08-26 CVE-2024-8168 SQL Injection vulnerability in Fabianros Online BUS Reservation Site 1.0
A vulnerability was found in code-projects Online Bus Reservation Site 1.0.
network
low complexity
fabianros CWE-89
critical
9.8
2024-08-26 CVE-2024-8169 SQL Injection vulnerability in Fabianros Online Quiz Site 1.0
A vulnerability was found in code-projects Online Quiz Site 1.0.
network
low complexity
fabianros CWE-89
critical
9.8