Vulnerabilities > Online Sports Complex Booking System Project > Online Sports Complex Booking System > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-05-12 CVE-2022-29987 SQL Injection vulnerability in Online Sports Complex Booking System Project Online Sports Complex Booking System 1.0
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=user/manage_user&id=.
network
low complexity
online-sports-complex-booking-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29986 SQL Injection vulnerability in Online Sports Complex Booking System Project Online Sports Complex Booking System 1.0
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_facility.
network
low complexity
online-sports-complex-booking-system-project CWE-89
critical
9.8
2022-05-12 CVE-2022-29985 SQL Injection vulnerability in Online Sports Complex Booking System Project Online Sports Complex Booking System 1.0
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_category.
network
low complexity
online-sports-complex-booking-system-project CWE-89
critical
9.8
2022-04-25 CVE-2022-28093 Unspecified vulnerability in Online Sports Complex Booking System Project Online Sports Complex Booking System 1.0
SCBS Online Sports Venue Reservation System v1.0 was discovered to contain a local file inclusion vulnerability which allow attackers to execute arbitrary code via a crafted PHP file.
network
low complexity
online-sports-complex-booking-system-project
critical
9.8