Vulnerabilities > Ocomon Project > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-10-13 CVE-2022-41390 SQL Injection vulnerability in Ocomon Project Ocomon 4.0
OcoMon v4.0 was discovered to contain a SQL injection vulnerability via the cod parameter at download.php.
network
low complexity
ocomon-project CWE-89
critical
9.8
2022-10-13 CVE-2022-41391 SQL Injection vulnerability in Ocomon Project Ocomon 4.0
OcoMon v4.0 was discovered to contain a SQL injection vulnerability via the cod parameter at showImg.php.
network
low complexity
ocomon-project CWE-89
critical
9.8