Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by CWE-89
Total 9311 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28018 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
CVE-2022-28019 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
CVE-2022-28020 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
CVE-2022-28017 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
CVE-2022-28015 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.
CVE-2022-28016 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\deduction_edit.php.
CVE-2022-28013 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_employee_edit.php.
CVE-2022-28014 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_edit.php.
CVE-2022-28010 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_delete.php.
CVE-2022-28011 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_delete.php.
CVE-2022-28012 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_delete.php.
CVE-2022-28009 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28008 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28007 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_delete.php.
CVE-2022-28006 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_delete.php.
CVE-2022-1258 1 Mcafee 2 Agent, Epolicy Orchestrator 2022-04-22 6.0 MEDIUM 7.2 HIGH
A blind SQL injection vulnerability in the ePolicy Orchestrator (ePO) extension of MA prior to 5.7.6 can be exploited by an authenticated administrator on ePO to perform arbitrary SQL queries in the back-end database, potentially leading to command execution on the server.
CVE-2014-4627 1 Rsa 1 Web Threat Detection 2022-04-22 6.5 MEDIUM 8.8 HIGH
SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
CVE-2015-9323 1 Duckdev 1 404 To 301 2022-04-22 7.5 HIGH 9.8 CRITICAL
The 404-to-301 plugin before 2.0.3 for WordPress has SQL injection.
CVE-2022-27369 1 Chshcms 1 Cscms 2022-04-22 6.5 MEDIUM 7.2 HIGH
Cscms Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the component news_News.php_hy.
CVE-2022-23865 1 Wecul 1 Nyron 2022-04-22 7.5 HIGH 9.8 CRITICAL
Nyron 1.0 is affected by a SQL injection vulnerability through Nyron/Library/Catalog/winlibsrch.aspx. To exploit this vulnerability, an attacker must inject '"> on the thes1 parameter.