Vulnerabilities (CVE)

Filtered by CWE-89
Total 14188 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-32362 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-23 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_category.php?id=.
CVE-2022-32355 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-23 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/view_product&id=.
CVE-2022-32363 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-23 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/view_category.php?id=.
CVE-2022-32353 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-23 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/categories/manage_field_order.php?id=.
CVE-2022-32354 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-23 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=user/manage_user&id=.
CVE-2019-4575 1 Ibm 1 Financial Transaction Manager 2022-06-23 7.5 HIGH 9.8 CRITICAL
IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.9 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 166801.
CVE-2021-41672 1 Peel 1 Peel Shopping 2022-06-23 5.5 MEDIUM 6.5 MEDIUM
PEEL Shopping CMS 9.4.0 is vulnerable to authenticated SQL injection in utilisateurs.php. A user that belongs to the administrator group can inject a malicious SQL query in order to affect the execution logic of the application and retrive information from the database.
CVE-2022-32359 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_category.
CVE-2022-32358 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/classes/Master.php?f=delete_inquiry.
CVE-2022-32366 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/view_field.php?id=.
CVE-2022-32367 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=inquiries/view_inquiry&id=.
CVE-2022-32337 1 Hospital\'s Patient Records Management System Project 1 Hospital\'s Patient Records Management System 2022-06-22 7.5 HIGH 9.8 CRITICAL
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/admin/patients/manage_patient.php?id=.
CVE-2022-32364 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/?page=products/manage_product&id=.
CVE-2022-32365 1 Product Show Room Site Project 1 Product Show Room Site 2022-06-22 6.5 MEDIUM 7.2 HIGH
Product Show Room Site v1.0 is vulnerable to SQL Injection via /psrs/admin/fields/manage_field.php?id=.
CVE-2022-32352 1 Hospital\'s Patient Records Management System Project 1 Hospital\'s Patient Records Management System 2022-06-22 7.5 HIGH 9.8 CRITICAL
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/classes/Master.php?f=delete_patient_admission.
CVE-2022-32336 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2022-06-22 7.5 HIGH 9.8 CRITICAL
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/view_menu.php?id=.
CVE-2022-23168 1 Amodat 1 Mobile Application Gateway 2022-06-22 7.5 HIGH 9.8 CRITICAL
The attacker could get access to the database. The SQL injection is in the username parameter at the login panel: username: admin'--
CVE-2022-31415 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2022-06-22 4.0 MEDIUM 6.5 MEDIUM
Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /report/list.php.
CVE-2022-2067 1 Rosariosis 1 Rosariosis 2022-06-21 6.4 MEDIUM 9.1 CRITICAL
SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.
CVE-2022-32335 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2022-06-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/manage_menu.php?id=.