Vulnerabilities > Felixwelberg

DATE CVE VULNERABILITY TITLE RISK
2023-11-06 CVE-2023-33924 SQL Injection vulnerability in Felixwelberg SIS Handball
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Felix Welberg SIS Handball allows SQL Injection.This issue affects SIS Handball: from n/a through 1.0.45.
network
low complexity
felixwelberg CWE-89
critical
9.8
2023-10-10 CVE-2023-41684 Cross-Site Request Forgery (CSRF) vulnerability in Felixwelberg SIS Handball
Cross-Site Request Forgery (CSRF) vulnerability in Felix Welberg SIS Handball plugin <= 1.0.45 versions.
network
low complexity
felixwelberg CWE-352
8.8