Vulnerabilities (CVE)

Filtered by CWE-89
Angry Yack Logo
Total 18012 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31975 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/admin/?page=user/manage_user&id=.
CVE-2022-31974 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/admin/?page=reports&date=.
CVE-2022-31971 1 Chatbot App With Suggestion Project 1 Chatbot App With Suggestion 2024-11-21 6.5 MEDIUM 7.2 HIGH
ChatBot App with Suggestion v1.0 is vulnerable to SQL Injection via /simple_chat_bot/admin/?page=responses/view_response&id=.
CVE-2022-31970 1 Chatbot App With Suggestion Project 1 Chatbot App With Suggestion 2024-11-21 6.5 MEDIUM 7.2 HIGH
ChatBot App with Suggestion v1.0 is vulnerable to SQL Injection via /simple_chat_bot/admin/?page=responses/manage_response&id=.
CVE-2022-31969 1 Chatbot App With Suggestion Project 1 Chatbot App With Suggestion 2024-11-21 7.5 HIGH 9.8 CRITICAL
ChatBot App with Suggestion v1.0 is vulnerable to SQL Injection via /simple_chat_bot/admin/?page=user/manage_user&id=.
CVE-2022-31965 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/respondent_types/manage_respondent_type.php?id=.
CVE-2022-31964 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via rdms/admin/respondent_types/view_respondent_type.php?id=.
CVE-2022-31962 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incidents/view_incident.php?id=.
CVE-2022-31961 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incidents/manage_incident.php?id=.
CVE-2022-31959 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/teams/manage_team.php?id=.
CVE-2022-31957 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via rdms/admin/teams/view_team.php?id=.
CVE-2022-31956 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incident_reports/manage_report.php?id=.
CVE-2022-31953 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incident_reports/view_report.php?id=.
CVE-2022-31952 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL injection via /rdms/classes/Master.php?f=delete_incident.
CVE-2022-31951 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_respondent_type.
CVE-2022-31948 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_report.
CVE-2022-31946 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_team.
CVE-2022-31941 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via \rdms\admin?page=user\manage_user&id=.
CVE-2022-31912 1 Online Tutor Portal Site Project 1 Online Tutor Portal Site 2024-11-21 6.5 MEDIUM 7.2 HIGH
Online Tutor Portal Site v1.0 is vulnerable to SQL Injection via /otps/classes/Master.php?f=delete_team.
CVE-2022-31908 1 Student Registration And Fee Payment System Project 1 Student Registration And Fee Payment System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Student Registration and Fee Payment System v1.0 is vulnerable to SQL Injection via /scms/student.php.
CVE-2022-31879 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 N/A 8.8 HIGH
Online Fire Reporting System 1.0 is vulnerable to SQL Injection via the date parameter.
CVE-2022-31856 1 Newsletter Module Project 1 Newsletter Module 2024-11-21 7.5 HIGH 9.8 CRITICAL
Newsletter Module v3.x was discovered to contain a SQL injection vulnerability via the zemez_newsletter_email parameter at /index.php.
CVE-2022-31788 1 Ideaco 1 Idealms 2024-11-21 7.5 HIGH 9.8 CRITICAL
IdeaLMS 2022 allows SQL injection via the IdeaLMS/ChatRoom/ClassAccessControl/6?isBigBlueButton=0&ClassID= pathname.
CVE-2022-31787 1 Ideaco 1 Ideatms 2024-11-21 7.5 HIGH 9.8 CRITICAL
IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO
CVE-2022-31768 1 Ibm 1 Infosphere Information Server 2024-11-21 7.5 HIGH 9.8 CRITICAL
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
CVE-2022-31659 3 Linux, Microsoft, Vmware 6 Linux Kernel, Windows, Access Connector and 3 more 2024-11-21 N/A 7.2 HIGH
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability. A malicious actor with administrator and network access can trigger a remote code execution.
CVE-2022-31489 1 Inoutscripts 1 Blockchain Altexchanger 2024-11-21 5.0 MEDIUM 7.5 HIGH
Inout Blockchain AltExchanger 1.2.1 allows index.php/home/about inoutio_language cookie SQL injection.
CVE-2022-31488 1 Inoutscripts 1 Blockchain Altexchanger 2024-11-21 5.0 MEDIUM 7.5 HIGH
Inout Blockchain AltExchanger 1.2.1 allows index.php/coins/update_marketboxslider marketcurrency SQL injection.
CVE-2022-31487 1 Inoutscripts 2 Blockchain Altexchanger, Blockchain Fiatexchanger 2024-11-21 5.0 MEDIUM 7.5 HIGH
Inout Blockchain AltExchanger 1.2.1 and Inout Blockchain FiatExchanger 2.2.1 allow Chart/TradingView/chart_content/master.php symbol SQL injection.
CVE-2022-31415 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 4.0 MEDIUM 6.5 MEDIUM
Online Fire Reporting System v1.0 was discovered to contain a SQL injection vulnerability via the GET parameter in /report/list.php.
CVE-2022-31384 1 Phpgurukul 1 Directory Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in add-directory.php.
CVE-2022-31383 1 Phpgurukul 1 Directory Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
CVE-2022-31382 1 Phpgurukul 1 Directory Management System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
CVE-2022-31361 1 Docebo 1 Docebo 2024-11-21 7.5 HIGH 9.8 CRITICAL
Docebo Community Edition v4.0.5 and below was discovered to contain a SQL injection vulnerability. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
CVE-2022-31357 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/inventory/index.php?view=edit&id=.
CVE-2022-31356 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/admin/store/index.php?view=edit&id=.
CVE-2022-31355 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Online Ordering System v2.3.2 was discovered to contain a SQL injection vulnerability via /ordering/index.php?q=category&search=.
CVE-2022-31340 1 Simple Inventory System Project 1 Simple Inventory System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Simple Inventory System v1.0 is vulnerable to SQL Injection via /inventory/table_edit_ajax.php.
CVE-2022-31339 1 Simple Inventory System Project 1 Simple Inventory System 2024-11-21 6.5 MEDIUM 7.2 HIGH
Simple Inventory System v1.0 is vulnerable to SQL Injection via /inventory/login.php.
CVE-2022-31338 1 Online Ordering System Project 1 Online Ordering System 2024-11-21 7.5 HIGH 9.8 CRITICAL
Online Ordering System 2.3.2 is vulnerable to SQL Injection via /ordering/admin/user/index.php?view=edit&id=.