Filtered by CWE-89
Filtered by vendor Subscriptions
Total 16423 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-31948 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_report.
CVE-2022-31946 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_team.
CVE-2022-31941 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via \rdms\admin?page=user\manage_user&id=.
CVE-2022-31912 1 Online Tutor Portal Site Project 1 Online Tutor Portal Site 2024-11-21 7.2 High
Online Tutor Portal Site v1.0 is vulnerable to SQL Injection via /otps/classes/Master.php?f=delete_team.
CVE-2022-31908 1 Student Registration And Fee Payment System Project 1 Student Registration And Fee Payment System 2024-11-21 7.2 High
Student Registration and Fee Payment System v1.0 is vulnerable to SQL Injection via /scms/student.php.
CVE-2022-31879 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 8.8 High
Online Fire Reporting System 1.0 is vulnerable to SQL Injection via the date parameter.
CVE-2022-31856 1 Newsletter Module Project 1 Newsletter Module 2024-11-21 9.8 Critical
Newsletter Module v3.x was discovered to contain a SQL injection vulnerability via the zemez_newsletter_email parameter at /index.php.
CVE-2022-31788 1 Ideaco 1 Idealms 2024-11-21 9.8 Critical
IdeaLMS 2022 allows SQL injection via the IdeaLMS/ChatRoom/ClassAccessControl/6?isBigBlueButton=0&ClassID= pathname.
CVE-2022-31787 1 Ideaco 1 Ideatms 2024-11-21 9.8 Critical
IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO
CVE-2022-31768 1 Ibm 1 Infosphere Information Server 2024-11-21 9.8 Critical
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
CVE-2022-31659 3 Linux, Microsoft, Vmware 6 Linux Kernel, Windows, Access Connector and 3 more 2024-11-21 7.2 High
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability. A malicious actor with administrator and network access can trigger a remote code execution.
CVE-2022-31489 1 Inoutscripts 1 Blockchain Altexchanger 2024-11-21 7.5 High
Inout Blockchain AltExchanger 1.2.1 allows index.php/home/about inoutio_language cookie SQL injection.
CVE-2022-31488 1 Inoutscripts 1 Blockchain Altexchanger 2024-11-21 7.5 High
Inout Blockchain AltExchanger 1.2.1 allows index.php/coins/update_marketboxslider marketcurrency SQL injection.
CVE-2022-31487 1 Inoutscripts 2 Blockchain Altexchanger, Blockchain Fiatexchanger 2024-11-21 7.5 High
Inout Blockchain AltExchanger 1.2.1 and Inout Blockchain FiatExchanger 2.2.1 allow Chart/TradingView/chart_content/master.php symbol SQL injection.
CVE-2022-31415 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 6.5 Medium
Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /report/list.php.
CVE-2022-31384 1 Phpgurukul 1 Directory Management System 2024-11-21 9.8 Critical
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in add-directory.php.
CVE-2022-31383 1 Phpgurukul 1 Directory Management System 2024-11-21 9.8 Critical
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
CVE-2022-31382 1 Phpgurukul 1 Directory Management System 2024-11-21 9.8 Critical
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
CVE-2022-31361 1 Docebo 1 Docebo 2024-11-21 9.8 Critical
Docebo Community Edition v4.0.5 and below was discovered to contain a SQL injection vulnerability. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2022-31357 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 9.8 Critical
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/inventory/index.php?view=edit&id=.