Filtered by CWE-89
Total 17409 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-28623 3 Hp, Hpe, Redhat 3 Hp-ux, Icewall Sso Certd, Enterprise Linux 2024-11-21 9.8 Critical
Security vulnerabilities in HPE IceWall SSO 10.0 certd could be exploited remotely to allow SQL injection or unauthorized data injection. HPE has provided the following updated modules to resolve these vulnerabilities. HPE IceWall SSO version 10.0 certd library Patch 9 for RHEL and HPE IceWall SSO version 10.0 certd library Patch 9 for HP-UX.
CVE-2022-28585 1 Phome 1 Empirecms 2024-11-21 9.8 Critical
EmpireCMS 7.5 has a SQL injection vulnerability in AdClass.php
CVE-2022-28552 1 Chshcms 1 Cscms 2024-11-21 8.8 High
Cscms 4.1 is vulnerable to SQL Injection. Log into the background, open the song module, create a new song, delete it to the recycle bin, and SQL injection security problems will occur when emptying the recycle bin.
CVE-2022-28533 1 Medical Hub Directory Site Project 1 Medical Hub Directory Site 2024-11-21 9.8 Critical
Sourcecodester Medical Hub Directory Site 1.0 is vulnerable to SQL Injection via /mhds/clinic/view_details.php.
CVE-2022-28531 1 Covid-19 Directory On Vaccination System Project 1 Covid-19 Directory On Vaccination System 2024-11-21 9.8 Critical
Sourcecodester Covid-19 Directory on Vaccination System1.0 is vulnerable to SQL Injection via the admin/login.php txtusername (aka Username) field.
CVE-2022-28530 1 Covid-19 Directory On Vaccination System Project 1 Covid-19 Directory On Vaccination System 2024-11-21 9.8 Critical
Sourcecodester Covid-19 Directory on Vaccination System 1.0 is vulnerable to SQL Injection via cmdcategory.
CVE-2022-28524 1 Ed01-cms Project 1 Ed01-cms 2024-11-21 9.8 Critical
ED01-CMS v20180505 was discovered to contain a SQL injection vulnerability via the component post.php.
CVE-2022-28512 1 Fantastic Blog Project 1 Fantastic Blog 2024-11-21 9.8 Critical
A SQL injection vulnerability exists in Sourcecodester Fantastic Blog CMS 1.0 . An attacker can inject query in "/fantasticblog/single.php" via the "id=5" parameters.
CVE-2022-28505 1 Jflyfox 1 Jfinal Cms 2024-11-21 7.2 High
Jfinal_cms 5.1.0 is vulnerable to SQL Injection via com.jflyfox.system.log.LogController.java.
CVE-2022-28468 1 Payroll Management System Project 1 Payroll Management System 2024-11-21 9.8 Critical
Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter.
CVE-2022-28467 1 Online Student Admission Project 1 Online Student Admission 2024-11-21 9.8 Critical
Online Student Admission v1.0 was discovered to contain a SQL injection vulnerability via the txtapplicationID parameter.
CVE-2022-28461 1 Mingyuefusu Project 1 Mingyuefusu 2024-11-21 9.8 Critical
mingyuefusu Library Management System all versions as of 03-27-2022 is vulnerable to SQL Injection.
CVE-2022-28452 1 Redplanetcomputers 1 Laundry Management System 2024-11-21 9.8 Critical
Red Planet Laundry Management System 1.0 is vulnerable to SQL Injection.
CVE-2022-28439 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&&action=delete&userid=4.
CVE-2022-28438 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=type&userrole=User&userid=.
CVE-2022-28437 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=type&userrole=Admin&userid=3.
CVE-2022-28436 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Hide&userid=.
CVE-2022-28435 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/siteoptions.php&action=displaygoal&value=1&roleid=1.
CVE-2022-28434 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=siteoptions&social=edit&sid=2.
CVE-2022-28433 1 Baby Care System Project 1 Baby Care System 2024-11-21 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Show&userid=.