Vulnerabilities (CVE)

Filtered by CWE-89
Total 11593 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-43233 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 N/A 7.2 HIGH
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchSelectedUser.php.
CVE-2022-43230 1 Simple Cold Storage Management System Project 1 Simple Cold Storage Managment System 2022-10-28 N/A 7.2 HIGH
Simple Cold Storage Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=bookings/view_details.
CVE-2022-43232 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 N/A 7.2 HIGH
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchOrderData.php.
CVE-2022-43228 1 Barangay Management System Project 1 Barangay Management System 2022-10-28 N/A 7.2 HIGH
Barangay Management System v1.0 was discovered to contain a SQL injection vulnerability via the hidden_id parameter at /clearance/clearance.php.
CVE-2022-28452 1 Redplanetcomputers 1 Laundry Management System 2022-10-28 7.5 HIGH 9.8 CRITICAL
Red Planet Laundry Management System 1.0 is vulnerable to SQL Injection.
CVE-2022-39976 1 School Activity Updates With Sms Notification Project 1 School Activity Updates With Sms Notification 2022-10-28 N/A 9.8 CRITICAL
School Activity Updates with SMS Notification v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /modules/announcement/index.php?view=edit&id=.
CVE-2021-38733 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php.
CVE-2021-38732 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php.
CVE-2021-38731 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php.
CVE-2021-38730 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php.
CVE-2021-38729 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php.
CVE-2021-38217 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS v 1.2 is vulnerable to SQL Injection via SEMCMS_User.php.
CVE-2022-40967 1 Deltaww 1 Diaenergie 2022-10-28 N/A 8.8 HIGH
The affected product DIAEnergie (versions prior to v1.9.01.002) is vulnerable to a SQL injection that exists in CheckIoTHubNameExisted. A low-privileged authenticated attacker could exploit this issue to inject arbitrary SQL queries.
CVE-2022-41133 1 Deltaww 1 Diaenergie 2022-10-28 N/A 8.8 HIGH
The affected product DIAEnergie (versions prior to v1.9.01.002) is vulnerable to a SQL injection that exists in GetDIAE_line_message_settingsListParameters. A low-privileged authenticated attacker could exploit this issue to inject arbitrary SQL queries.
CVE-2021-38737 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS v 1.1 is vulnerable to SQL Injection via Ant_Pro.php.
CVE-2021-38736 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php.
CVE-2021-38734 1 Sem-cms 1 Semcms 2022-10-28 N/A 9.8 CRITICAL
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php.
CVE-2022-41773 1 Deltaww 1 Diaenergie 2022-10-28 N/A 8.8 HIGH
The affected product DIAEnergie (versions prior to v1.9.01.002) is vulnerable to a SQL injection that exists in CheckDIACloud. A low-privileged authenticated attacker could exploit this issue to inject arbitrary SQL queries.
CVE-2022-43276 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 N/A 7.2 HIGH
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the productId parameter at /php_action/fetchSelectedfood.php.
CVE-2022-37202 1 Jflyfox 1 Jfinal Cms 2022-10-28 N/A 8.8 HIGH
JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/advicefeedback/list