Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2022-30414: bug_report/SQLi-4.md at main · k0xx11/bug_report

Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/?page=applications/view_application&id=.

CVE
#sql#vulnerability#windows#php#auth#firefox
CVE-2022-30407: bug_report/SQLi-1.md at main · k0xx11/bug_report

Pharmacy Sales And Inventory System v1.0 is vulnerable to SQL Injection via /pharmacy-sales-and-inventory-system/manage_user.php?id=.

CVE-2022-30415: bug_report/SQLi-5.md at main · k0xx11/bug_report

Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/applications/update_status.php?id=.

CVE-2022-30417: bug_report/SQLi-6.md at main · k0xx11/bug_report

Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via ctpms/admin/?page=user/manage_user&id=.

CVE-2022-30413: bug_report/SQLi-1.md at main · k0xx11/bug_report

Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/classes/Master.php?f=delete_application.

CVE-2022-30412: bug_report/SQLi-3.md at main · k0xx11/bug_report

Covid-19 Travel Pass Management System v1.0 is vulnerable to SQL Injection via /ctpms/admin/individuals/update_status.php?id=.

CVE-2022-27247: SES IT und Web Solutions – Ihr Partner für Web und IT Dienstleistungen

onlinetolls in cdSoft Onlinetools-Smart Winhotel.MX 2021 allows an attacker to download sensitive information about any customer (e.g., data of birth, full address, mail information, and phone number) via GastKont Insecure Direct Object Reference.

CVE-2022-30367: bug_report/delet-file-1.md at main · k0xx11/bug_report

Air Cargo Management System v1.0 is vulnerable to file deletion via /acms/classes/Master.php?f=delete_img.

CVE-2022-30373: bug_report/SQLi-4.md at main · k0xx11/bug_report

Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/admin/cargo_types/manage_cargo_type.php?id=.

CVE-2022-30373: bug_report/SQLi-4.md at main · k0xx11/bug_report

Air Cargo Management System 1.0 is vulnerable to SQL Injection via /acms/admin/cargo_types/manage_cargo_type.php?id=.