Total
15732 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2022-41440 | 1 Billing System Project Project | 1 Billing System Project | 2025-05-20 | 7.2 High |
Billing System Project v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /phpinventory/editcategory.php. | ||||
CVE-2022-41439 | 1 Billing System Project Project | 1 Billing System Project | 2025-05-20 | 7.2 High |
Billing System Project v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /phpinventory/edituser.php. | ||||
CVE-2022-40887 | 1 Best Student Result Management System Project | 1 Best Student Result Management System | 2025-05-20 | 9.8 Critical |
SourceCodester Best Student Result Management System 1.0 is vulnerable to SQL Injection. | ||||
CVE-2022-33880 | 1 Hospital Management System Mini-project Project | 1 Hospital Management System Mini-project | 2025-05-20 | 9.8 Critical |
hms-staff.php in Projectworlds Hospital Management System Mini-Project through 2018-06-17 allows SQL injection via the type parameter. | ||||
CVE-2021-43361 | 1 Meddata | 1 Hbys | 2025-05-20 | 9.9 Critical |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1. | ||||
CVE-2021-43362 | 1 Meddata | 1 Hbys | 2025-05-20 | 9.9 Critical |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MedData HBYS allows SQL Injection.This issue affects HBYS: from unspecified before 1.1. | ||||
CVE-2024-29169 | 1 Dell | 1 Secure Connect Gateway | 2025-05-20 | 5.4 Medium |
Dell SCG, versions prior to 5.22.00.00, contain a SQL Injection Vulnerability in the SCG UI for an internal audit REST API. A remote authenticated attacker could potentially exploit this vulnerability, leading to the execution of certain SQL commands on the application's backend database causing potential unauthorized access and modification of application data. | ||||
CVE-2022-40944 | 1 Phpgurukul | 1 Dairy Farm Shop Management System | 2025-05-20 | 9.8 Critical |
Dairy Farm Shop Management System 1.0 is vulnerable to SQL Injection via sales-report-ds.php file. | ||||
CVE-2022-40315 | 2 Fedoraproject, Moodle | 3 Extra Packages For Enterprise Linux, Fedora, Moodle | 2025-05-20 | 9.8 Critical |
A limited SQL injection risk was identified in the "browse list of users" site administration page. | ||||
CVE-2022-41532 | 1 Open Source Sacco Management System Project | 1 Open Source Sacco Management System | 2025-05-20 | 7.2 High |
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_plan. | ||||
CVE-2022-40943 | 1 Phpgurukul | 1 Dairy Farm Shop Management System | 2025-05-20 | 9.8 Critical |
Dairy Farm Shop Management System 1.0 is vulnerable to SQL Injection via bwdate-report-ds.php file. | ||||
CVE-2022-35156 | 1 Phpgurukul | 1 Bus Pass Management System | 2025-05-20 | 9.8 Critical |
Bus Pass Management System 1.0 was discovered to contain a SQL Injection vulnerability via the searchdata parameter at /buspassms/download-pass.php.. | ||||
CVE-2022-36961 | 1 Solarwinds | 1 Orion Platform | 2025-05-20 | 8.8 High |
A vulnerable component of Orion Platform was vulnerable to SQL Injection, an authenticated attacker could leverage this for privilege escalation or remote code execution. | ||||
CVE-2022-40872 | 1 Simple E-learning System Project | 1 Simple E-learning System | 2025-05-20 | 9.8 Critical |
An SQL injection vulnerability issue was discovered in Sourcecodester Simple E-Learning System 1.0., in /vcs/classRoom.php?classCode=, classCode. | ||||
CVE-2025-1578 | 1 Phpgurukul | 1 Online Shopping Portal | 2025-05-20 | 6.3 Medium |
A vulnerability, which was classified as critical, was found in PHPGurukul/Campcodes Online Shopping Portal 2.1. This affects an unknown part of the file /search-result.php. The manipulation of the argument Product leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | ||||
CVE-2025-4331 | 1 Senior-walter | 1 Online Student Clearance System | 2025-05-20 | 7.3 High |
A vulnerability classified as critical was found in SourceCodester Online Student Clearance System 1.0. This vulnerability affects unknown code of the file /Admin/login.php. The manipulation of the argument id/username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | ||||
CVE-2024-10864 | 2025-05-20 | N/A | ||
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advanced Authentication. This issue affects Advanced Authentication versions before 6.5 | ||||
CVE-2022-42230 | 1 Simple Cold Storage Management System Project | 1 Simple Cold Storage Managment System | 2025-05-19 | 7.2 High |
Simple Cold Storage Management System v1.0 is vulnerable to SQL Injection via /csms/admin/?page=user/manage_user&id=. | ||||
CVE-2022-41530 | 1 Open Source Sacco Management System Project | 1 Open Source Sacco Management System | 2025-05-19 | 7.2 High |
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_borrower. | ||||
CVE-2022-41408 | 1 Online Pet Shop We App Project | 1 Online Pet Shop We App | 2025-05-19 | 9.8 Critical |
Online Pet Shop We App v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/view_order. |