Vulnerabilities (CVE)

Filtered by CWE-89
Total 20789 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-44860 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/transactions/update_status.php.
CVE-2022-44859 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/admin/products/manage_product.php.
CVE-2022-44858 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/products/view_product.php.
CVE-2022-44838 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /services/view_service.php.
CVE-2022-44820 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=transactions/manage_transaction&id=.
CVE-2022-44790 1 Interspire 1 Email Marketer 2026-06-17 N/A 7.5 HIGH
Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.
CVE-2022-44785 1 Maggioli 1 Appalti \& Contratti 2026-06-17 N/A 9.8 CRITICAL
An issue was discovered in Appalti & Contratti 9.12.2. The target web applications are subject to multiple SQL Injection vulnerabilities, some of which executable even by unauthenticated users, as demonstrated by the GetListaEnti.do cfamm parameter.
CVE-2022-44727 1 Lineagrafica 1 Eu Cookie Law Gdpr 2026-06-17 N/A 9.1 CRITICAL
The EU Cookie Law GDPR (Banner + Blocker) module before 2.1.3 for PrestaShop allows SQL Injection via a cookie ( lgcookieslaw or __lglaw ).
CVE-2022-44588 1 Blocksera 1 Cryptocurrency Widgets Pack 2026-06-17 N/A 9.9 CRITICAL
Unauth. SQL Injection vulnerability in Cryptocurrency Widgets Pack Plugin <=1.8.1 on WordPress.
CVE-2022-44580 1 Richplugins 1 Plugin For Google Reviews 2026-06-17 N/A 9.1 CRITICAL
SQL Injection (SQLi) vulnerability in RichPlugins Plugin for Google Reviews plugin <= 2.2.3 versions.
CVE-2022-44415 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/view_mechanic.php?id=.
CVE-2022-44414 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=.
CVE-2022-44413 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.
CVE-2022-44403 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=user/manage_user&id=.
CVE-2022-44402 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_transaction.
CVE-2022-44399 1 Poultry Farm Management System Project 1 Poultry Farm Management System 2026-06-17 N/A 9.8 CRITICAL
Poultry Farm Management System v1.0 contains a SQL injection vulnerability via the del parameter at /Redcock-Farm/farm/category.php.
CVE-2022-44393 1 Sanitization Management System Project 1 Sanitization Management System 2026-06-17 N/A 7.2 HIGH
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services/view_service&id=.
CVE-2022-44379 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_service.
CVE-2022-44378 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2026-06-17 N/A 7.2 HIGH
Automotive Shop Management System v1.0 is vulnerable to SQL via /asms/classes/Master.php?f=delete_mechanic.
CVE-2022-44348 1 Sanitization Management System Project 1 Sanitization Management System 2026-06-17 N/A 7.2 HIGH
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/update_status.php?id=.