Vulnerabilities (CVE)

Filtered by CWE-89
Total 15287 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-32339 1 Hospital\'s Patient Records Management System Project 1 Hospital\'s Patient Records Management System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/admin/doctors/view_doctor.php?id=.
CVE-2022-32338 1 Hospital\'s Patient Records Management System Project 1 Hospital\'s Patient Records Management System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/admin/doctors/manage_doctor.php?id=.
CVE-2022-32337 1 Hospital\'s Patient Records Management System Project 1 Hospital\'s Patient Records Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/admin/patients/manage_patient.php?id=.
CVE-2022-32336 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/view_menu.php?id=.
CVE-2022-32335 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/manage_menu.php?id=.
CVE-2022-32334 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/categories/manage_category.php?id=.
CVE-2022-32333 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/sales/receipt.php?id=.
CVE-2022-32332 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/classes/Master.php?f=delete_category.
CVE-2022-32331 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/categories/view_category.php?id=.
CVE-2022-32330 1 Fast Food Ordering System Project 1 Fast Food Ordering System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/classes/Master.php?f=delete_menu.
CVE-2022-32311 1 Ingredient Stock Management System Project 1 Ingredient Stock Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Ingredient Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /isms/admin/stocks/view_stock.php.
CVE-2022-32302 1 Theme Park Ticketing System Project 1 Theme Park Ticketing System 2024-11-21 6.5 MEDIUM 8.8 HIGH
Theme Park Ticketing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at edit_ticket.php.
CVE-2022-32301 1 Youdiancms 1 Youdiancms 2024-11-21 7.5 HIGH 9.8 CRITICAL
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the IdList parameter at /App/Lib/Action/Home/ApiAction.class.php.
CVE-2022-32300 1 Youdiancms 1 Youdiancms 2024-11-21 6.5 MEDIUM 8.8 HIGH
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the MailSendID parameter at /App/Lib/Action/Admin/MailAction.class.php.
CVE-2022-32299 1 Youdiancms 1 Youdiancms 2024-11-21 6.5 MEDIUM 8.8 HIGH
YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the id parameter at /App/Lib/Action/Admin/SiteAction.class.php.
CVE-2022-32297 1 Piwigo 1 Piwigo 2024-11-21 5.1 MEDIUM 7.5 HIGH
Piwigo v12.2.0 was discovered to contain SQL injection vulnerability via the Search function.
CVE-2022-32246 1 Sap 1 Business Objects Business Intelligence Platform 2024-11-21 4.9 MEDIUM 4.6 MEDIUM
SAP Busines Objects Business Intelligence Platform (Visual Difference Application) - versions 420, 430, allows an authenticated attacker who has access to BI admin console to send crafted queries and extract data from the SQL backend. On successful exploitation, the attacker can cause limited impact on confidentiality and integrity of the application
CVE-2022-32101 1 Kkcms Project 1 Kkcms 2024-11-21 7.5 HIGH 9.8 CRITICAL
kkcms v1.3.7 was discovered to contain a SQL injection vulnerability via the cid parameter at /template/wapian/vlist.php.
CVE-2022-32095 1 Hospital Management System Project 1 Hospital Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter at orders.php.
CVE-2022-32094 1 Hospital Management System Project 1 Hospital Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the loginid parameter at doctorlogin.php.