Search Results (18939 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-3751 1 Owncast Project 1 Owncast 2025-04-25 9.8 Critical
SQL Injection in GitHub repository owncast/owncast prior to 0.0.13.
CVE-2022-44291 1 Webtareas Project 1 Webtareas 2025-04-24 9.8 Critical
webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in phasesets.php.
CVE-2022-44290 1 Webtareas Project 1 Webtareas 2025-04-24 9.8 Critical
webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in deleteapprovalstages.php.
CVE-2022-44277 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/classes/Master.php?f=delete_product.
CVE-2022-45328 1 Church Management System Project 1 Church Management System 2025-04-24 7.2 High
Church Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/edit_members.php.
CVE-2022-44348 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/update_status.php?id=.
CVE-2022-44347 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=inquiries/view_inquiry&id=.
CVE-2022-44345 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=quotes/view_quote&id=.
CVE-2022-44296 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/quotes/manage_remark.php?id=.
CVE-2022-44295 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/assign_team.php?id=.
CVE-2022-44294 1 Sanitization Management System Project 1 Sanitization Management System 2025-04-24 7.2 High
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services/manage_service&id=.
CVE-2022-30528 1 Isic.lk Project 1 Isic.lk 2025-04-24 9.8 Critical
SQL Injection vulnerability in asith-eranga ISIC tour booking through version published on Feb 13th 2018, allows attackers to execute arbitrary commands via the username parameter to /system/user/modules/mod_users/controller.php.
CVE-2024-54927 1 Lopalopa 1 E-learning Management System 2025-04-24 7.2 High
Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_users.php.
CVE-2024-54928 1 Lopalopa 1 E-learning Management System 2025-04-24 7.2 High
kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_teacher.php,
CVE-2024-54934 1 Lopalopa 1 E-learning Management System 2025-04-24 9.8 Critical
Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_class.php.
CVE-2023-51052 1 S-cms 1 S-cms 2025-04-24 9.8 Critical
S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_formauth parameter at /admin/ajax.php.
CVE-2024-54932 1 Lopalopa 1 E-learning Management System 2025-04-24 9.8 Critical
Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_department.php.
CVE-2024-54931 1 Lopalopa 1 E-learning Management System 2025-04-24 9.8 Critical
A SQL Injection was found in /admin/delete_event.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the id parameter.
CVE-2024-52675 2 Oretnom23, Sourcecodester 2 Sentiment Based Movie Rating System, Sentiment Based Movie Rating System 2025-04-24 9.8 Critical
SourceCodester Sentiment Based Movie Rating System 1.0 is vulnerable to SQL Injection in /msrps/movies.php.
CVE-2024-32847 1 Ivanti 1 Endpoint Manager 2025-04-24 7.2 High
SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Update allows a remote authenticated attacker with admin privileges to achieve remote code execution.