Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness SQL InjectionCWE-89 × clear
Telecontrol Server Basic HIGH 8.8
CVE-2025-30002

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Telecontrol Server Basic HIGH 8.8
CVE-2025-30003

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Telecontrol Server Basic HIGH 8.8
CVE-2025-30030

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Telecontrol Server Basic HIGH 8.8
CVE-2025-30031

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Telecontrol Server Basic HIGH 8.8
CVE-2025-30032

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Telecontrol Server Basic CRITICAL 9.8
CVE-2025-27495

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $2,300 2025-04-16
Telecontrol Server Basic CRITICAL 9.8
CVE-2025-27539

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $2,300 2025-04-16
Telecontrol Server Basic CRITICAL 9.8
CVE-2025-27540

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $2,300 2025-04-16
Telecontrol Server Basic HIGH 8.8
CVE-2025-29905

A vulnerability has been identified in TeleControl Server Basic (All versions < V3.1.2.2). The affected application is vulnerable to SQL injection th…

Fix: 3.1.2.2+
Fix from $1,950 2025-04-16
Online Id Generator System CRITICAL 9.8
CVE-2024-40072

Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at id_generator/admin/?pag…

No fix yet
Fix from $2,300 2025-04-16
Online Id Generator System CRITICAL 9.8
CVE-2024-40073

Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the template parameter at id_generator/admi…

No fix yet
Fix from $2,300 2025-04-16
Online Id Generator System MEDIUM 5.9
CVE-2024-40068

Sourcecodester Online ID Generator System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at id_generator/admin/?pag…

No fix yet
Fix from $1,600 2025-04-16
Web Based Pharmacy Product Management System CRITICAL 9.8
CVE-2025-3694

A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown par…

No fix yet
Fix from $2,300 2025-04-16
Web Based Pharmacy Product Management System HIGH 8.8
CVE-2025-3696

A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unkno…

No fix yet
Fix from $1,950 2025-04-16
Web Based Pharmacy Product Management System HIGH 8.8
CVE-2025-3697

A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue affe…

No fix yet
Fix from $1,950 2025-04-16
Men Salon Management System CRITICAL 9.8
CVE-2025-3689

A vulnerability has been found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This vulnerability affects unknown code of t…

No fix yet
Fix from $2,300 2025-04-16
Men Salon Management System CRITICAL 9.8
CVE-2025-3690

A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects some unknown processing of the…

No fix yet
Fix from $2,300 2025-04-16
Unclassified HIGH 7.6
CVE-2025-39566

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Hostel hostel allows Blind SQL Injection.Th…

Mitigation only
Fix from $1,950 2025-04-16
Unclassified HIGH 7.6
CVE-2025-39518

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RedefiningTheWeb BMA Lite bma-lite-appointment-…

Mitigation only
Fix from $1,950 2025-04-16
Unclassified CRITICAL 9.4
CVE-2025-1981

Improper neutralization of input provided by a low-privileged user into a file search functionality in Ready_'s Invoices module allows for SQL Inject…

Mitigation only
Fix from $2,300 2025-04-16
Kindergarten Management System CRITICAL 9.8
CVE-2025-3684

A vulnerability was found in Xianqi Kindergarten Management System 2.0 Bulid 20190808. It has been rated as critical. This issue affects some unknown…

No fix yet
Fix from $2,300 2025-04-16
Patient Record Management System HIGH 8.8
CVE-2025-3685

A vulnerability classified as critical has been found in code-projects Patient Record Management System 1.0. Affected is an unknown function of the f…

No fix yet
Fix from $1,950 2025-04-16
Novel Plus CRITICAL 9.8
CVE-2025-3676

A vulnerability classified as critical has been found in xxyopen Novel-Plus 3.5.0. This affects an unknown part of the file /api/front/search/books. …

No fix yet
Fix from $2,300 2025-04-16
Shopware MEDIUM 6.8
CVE-2025-27892EPSS 12%

Shopware prior to version 6.5.8.13 is affected by a SQL injection vulnerability in the /api/search/order endpoint. NOTE: this issue exists because of…

Fix: 6.5.8.17 / 6.6.10.3+
Fix from $1,600 2025-04-15
Unclassified HIGH 7.6
CVE-2025-26908

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Gurmehub Kargo Entegratör kargo-entegrator allo…

Mitigation only
Fix from $1,950 2025-04-15
Dingfanzu CRITICAL 9.8
CVE-2025-28100

A SQL Injection vulnerability in dingfanzuCMS v.1.0 allows a attacker to execute arbitrary code via not filtering the content correctly at the "opera…

No fix yet
Fix from $2,300 2025-04-15
Hitout Car Sale MEDIUM 5.9
CVE-2025-28198

A SQL injection vulnerability in Hitout car sale 1.0 allows a remote attacker to obtain sensitive information via the orderBy parameter of the StoreC…

No fix yet
Fix from $1,600 2025-04-15
Cms MEDIUM 6.5
CVE-2020-18243

SQL injection vulnerability found in Enricozab CMS v.1.0 allows a remote attacker to execute arbitrary code via /hdo/hdo-view-case.php.

Mitigation only
Fix from $1,600 2025-04-15
Unclassified MEDIUM 6.5
CVE-2025-32993

Vision Helpdesk through 5.7.0 allows Time-Based Blind SQL injection via the Forgot Password (aka index.php?/home/forgot-password) vis_username parame…

Mitigation only
Fix from $1,600 2025-04-15
Music Class Enrollment System CRITICAL 9.8
CVE-2025-3589

A vulnerability, which was classified as critical, was found in SourceCodester Music Class Enrollment System 1.0. Affected is an unknown function of …

No fix yet
Fix from $2,300 2025-04-14