Security
Headlines
HeadlinesLatestCVEs

Tag

#php

CVE-2022-30823: bug_report/SQLi-1.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\blog_events_edit.php.

CVE
#sql#vulnerability#windows#php#firefox
CVE-2022-31959: bug_report/SQLi-8.md at main · k0xx11/bug_report

Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/teams/manage_team.php?id=.

CVE-2022-31945: bug_report/delet-file-1.md at main · k0xx11/bug_report

Rescue Dispatch Management System v1.0 is vulnerable to Delete any file via /rdms/classes/Master.php?f=delete_img.

CVE-2022-31946: bug_report/SQL-2.md at main · k0xx11/bug_report

Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_team.

CVE-2022-30834: bug_report/SQLi-11.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_manage_account_details.php?booking_id=31&user_id=

CVE-2022-30510: GitHub - bigzooooz/CVE-2022-30510: School Dormitory Management System 1.0 - Unauthenticated SQL Injection

School Dormitory Management System 1.0 is vulnerable to SQL Injection via reports/daily_collection_report.php:59.

CVE-2022-30490: GitHub - yasinyildiz26/Badminton-Center-Management-System

Badminton Center Management System V1.0 is vulnerable to SQL Injection via parameter 'id' in /bcms/admin/court_rentals/update_status.php.

CVE-2022-30815: bug_report/SQLi-4.md at main · k0xx11/bug_report

elitecms 1.01 is vulnerable to SQL Injection via admin/edit_sidebar.php?page=2&sidebar=

CVE-2022-29725: There is a file upload vulnerability in the background settings page · Issue #161 · Creatiwity/wityCMS

An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file.