Vulnerabilities (CVE)

Filtered by CWE-89
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30413 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/classes/Master.php?f=delete_application.
CVE-2022-30411 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/?page=individuals/view_individual&id=.
CVE-2022-30412 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/individuals/update_status.php?id=.
CVE-2022-30414 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/?page=applications/view_application&id=.
CVE-2022-30417 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via ctpms/admin/?page=user/manage_user&id=.
CVE-2022-30415 1 Covid 19 Travel Pass Management System Project 1 Covid 19 Travel Pass Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/applications/update_status.php?id=.
CVE-2022-30404 1 College Management System Project 1 College Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
College Management System v1.0 is vulnerable to SQL Injection via /College_Management_System/admin/display-teacher.php?teacher_id=.
CVE-2022-30403 1 Merchandise Online Store Product 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/?p=products&c=.
CVE-2022-30407 1 Pharmacy Sales And Inventory System Project 1 Pharmacy Sales And Inventory System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Pharmacy Sales And Inventory System v1.0 is vulnerable to SQL Injection via /pharmacy-sales-and-inventory-system/manage_user.php?id=.
CVE-2022-30400 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/orders/view_order.php?view=user&id=.
CVE-2022-30401 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/?p=view_product&id=.
CVE-2022-30396 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=inventory/manage_inventory&id=.
CVE-2022-30399 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=maintenance/manage_category&id=.
CVE-2022-30398 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=orders/view_order&id=.
CVE-2022-30393 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=product/manage_product&id=.
CVE-2022-30395 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_cart.
CVE-2022-30392 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_sub_category.
CVE-2022-30387 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=pay_order.
CVE-2022-30391 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_category.
CVE-2022-30402 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 6.5 MEDIUM 7.2 HIGH
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=maintenance/manage_sub_category&id=.
CVE-2022-30386 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_featured.
CVE-2022-30384 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_inventory.
CVE-2022-30385 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_order.
CVE-2022-30376 1 Simple Social Networking Site Project 1 Simple Social Networking Site 2022-05-23 6.5 MEDIUM 7.2 HIGH
Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/members/view_member.php?id=.
CVE-2022-30378 1 Simple Social Networking Site Project 1 Simple Social Networking Site 2022-05-23 6.5 MEDIUM 7.2 HIGH
Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/?page=posts/view_post&id=.
CVE-2022-30379 1 Simple Social Networking Site Project 1 Simple Social Networking Site 2022-05-23 6.5 MEDIUM 7.2 HIGH
Sourcecodester Simple Social Networking Site v1.0 is vulnerable to SQL Injection via /sns/admin/?page=user/manage_user&id=.
CVE-2022-30370 1 Air Cargo Management System Project 1 Air Cargo Management System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/classes/Master.php?f=delete_cargo_type.
CVE-2022-30371 1 Air Cargo Management System Project 1 Air Cargo Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/admin/cargo_types/view_cargo_type.php?id=.
CVE-2022-30372 1 Air Cargo Management System Project 1 Air Cargo Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/classes/Master.php?f=delete_cargo.
CVE-2022-30373 1 Air Cargo Management System Project 1 Air Cargo Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/admin/cargo_types/manage_cargo_type.php?id=.
CVE-2022-30374 1 Air Cargo Management System Project 1 Air Cargo Management System 2022-05-23 6.5 MEDIUM 7.2 HIGH
Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/admin/?page=transactions/manage_transaction&id=.
CVE-2022-29009 1 Cyber Cafe Management System Project 1 Cyber Cafe Management System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allows attackers to bypass authentication.
CVE-2022-29007 1 Dairy Farm Shop Management System Project 1 Dairy Farm Shop Management System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
CVE-2022-29006 1 Phpgurukul 1 Directory Management System 2022-05-23 7.5 HIGH 9.8 CRITICAL
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.
CVE-2022-22413 1 Ibm 1 Robotic Process Automation 2022-05-21 7.5 HIGH 9.8 CRITICAL
IBM Robotic Process Automation 21.0.0, 21.0.1, and 21.0.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 223022.
CVE-2022-30002 1 Insurance Management System Project 1 Insurance Management System 2022-05-21 6.5 MEDIUM 7.2 HIGH
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=.
CVE-2022-30451 1 Waimairencms Project 1 Waimairencms 2022-05-20 6.5 MEDIUM 8.8 HIGH
An authenticated user could execute code via a SQLi vulnerability in waimairenCMS before version 9.1.
CVE-2022-30449 1 Hospital Management System Project 1 Hospital Management System 2022-05-20 7.5 HIGH 9.8 CRITICAL
Hospital Management System in PHP with Source Code (HMS) 1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in room.php.
CVE-2022-30452 1 Shopwind 1 Shopwind 2022-05-20 6.5 MEDIUM 7.2 HIGH
ShopWind <= v3.4.2 has a Sql injection vulnerability in Database.php
CVE-2022-30048 1 Mingsoft 1 Mcms 2022-05-20 7.5 HIGH 9.8 CRITICAL
Mingsoft MCMS 5.2.7 was discovered to contain a SQL injection vulnerability in /mdiy/dict/list URI via orderBy parameter.
CVE-2022-30047 1 Mingsoft 1 Mcms 2022-05-20 7.5 HIGH 9.8 CRITICAL
Mingsoft MCMS v5.2.7 was discovered to contain a SQL injection vulnerability in /mdiy/dict/listExcludeApp URI via orderBy parameter.
CVE-2022-27381 1 Mariadb 1 Mariadb 2022-05-19 5.0 MEDIUM 7.5 HIGH
An issue in the component Field::set_default of MariaDB Server v10.6 and below was discovered to allow attackers to cause a Denial of Service (DoS) via specially crafted SQL statements.
CVE-2022-29747 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/manage_invoice&id= // Leak place ---> id.
CVE-2022-29751 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client.
CVE-2022-29750 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_service.
CVE-2022-29749 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice.
CVE-2022-29748 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via \cms\admin?page=client/manage_client&id=.
CVE-2022-29985 1 Online Sports Complex Booking System Project 1 Online Sports Complex Booking System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_category.
CVE-2022-29981 1 Simple Client Management System Project 1 Simple Client Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete.
CVE-2022-29986 1 Online Sports Complex Booking System Project 1 Online Sports Complex Booking System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_facility.