Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Archery HIGH 7.5
CVE-2023-48053

Archery v1.10.0 uses a non-random or static IV for Cipher Block Chaining (CBC) mode in AES encryption. This vulnerability can lead to the disclosure …

Mitigation only
Fix from $1,950 2023-11-16
Archery MEDIUM 6.5
CVE-2023-30552

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30553

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30554

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30555

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30556

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30557

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30558

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery MEDIUM 6.5
CVE-2023-30605

Archery is an open source SQL audit platform. The Archery project contains multiple SQL injection vulnerabilities, that may allow an attacker to quer…

No fix yet
Fix from $1,600 2023-04-19
Archery CRITICAL 9.8
CVE-2022-38538

Archery v1.7.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the checksum parameter in the report module.

Fix: 1.9.0+
Fix from $2,300 2022-09-13
Archery CRITICAL 9.8
CVE-2022-38539

Archery v1.7.5 to v1.8.5 was discovered to contain a SQL injection vulnerability via the where parameter at /archive/apply.

Fix: after 1.8.5
Fix from $2,300 2022-09-13
Archery CRITICAL 9.8
CVE-2022-38540

Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the create_kill_session interface.

Fix: 1.9.0+
Fix from $2,300 2022-09-13
Archery CRITICAL 9.8
CVE-2022-38541

Archery v1.8.3 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_time and stop_time parameters in the my2sql i…

Fix: after 1.8.5
Fix from $2,300 2022-09-13
Archery CRITICAL 9.8
CVE-2022-38542

Archery v1.4.0 to v1.8.5 was discovered to contain a SQL injection vulnerability via the ThreadIDs parameter in the kill_session interface. The proje…

Fix: 1.9.0+
Fix from $2,300 2022-09-13
Archery CRITICAL 9.8
CVE-2022-38537

Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file, end_file, start_time, and stop_time par…

Fix: 1.9.0+
Fix from $2,300 2022-09-13