Vulnerabilities > Phptpoint > Pharmacy Management System > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-08-02 CVE-2022-34954 SQL Injection vulnerability in PHPtpoint Pharmacy Management System 1.0
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at invoiceprint.php.
network
low complexity
phptpoint CWE-89
critical
9.8
2022-08-02 CVE-2022-34953 SQL Injection vulnerability in PHPtpoint Pharmacy Management System 1.0
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at getOrderReport.php.
network
low complexity
phptpoint CWE-89
critical
9.8
2022-08-02 CVE-2022-34952 SQL Injection vulnerability in PHPtpoint Pharmacy Management System 1.0
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at edituser.php.
network
low complexity
phptpoint CWE-89
critical
9.8
2022-08-02 CVE-2022-34951 SQL Injection vulnerability in PHPtpoint Pharmacy Management System 1.0
Pharmacy Management System v1.0 was discovered to contain a SQL injection vulnerability via the startDate parameter at getsalereport.php.
network
low complexity
phptpoint CWE-89
critical
9.8
2018-10-29 CVE-2018-18704 SQL Injection vulnerability in PHPtpoint Pharmacy Management System 1.0
PhpTpoint Pharmacy Management System suffers from a SQL injection vulnerability in the index.php username parameter.
network
low complexity
phptpoint CWE-89
critical
9.8