Search Results (17340 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-44662 1 Phpgurukul 1 Online Shopping Portal 2025-11-18 6.5 Medium
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the username parameter in the admin page.
CVE-2024-44663 1 Phpgurukul 1 Online Shopping Portal 2025-11-18 6.5 Medium
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the product parameter in search-result.php.
CVE-2024-44659 1 Phpgurukul 1 Online Shopping Portal 2025-11-18 9.8 Critical
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in forgot-password.php.
CVE-2024-44664 1 Phpgurukul 1 Online Shopping Portal 2025-11-18 6.5 Medium
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the name, summary, review, quality, price, and value parameters in product-details.php.
CVE-2025-13210 2 Itsourcecode, Janobe 2 Inventory Management System, Inventory Management System 2025-11-18 4.7 Medium
A security vulnerability has been detected in itsourcecode Inventory Management System 1.0. This impacts an unknown function of the file /admin/products/index.php?view=add. Such manipulation of the argument PROMODEL leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
CVE-2025-13233 2 Itsourcecode, Janobe 2 Inventory Management System, Inventory Management System 2025-11-18 7.3 High
A vulnerability has been found in itsourcecode Inventory Management System 1.0. The affected element is an unknown function of the file /index.php?q=single-item. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
CVE-2025-13234 2 Itsourcecode, Janobe 2 Inventory Management System, Inventory Management System 2025-11-18 6.3 Medium
A vulnerability was found in itsourcecode Inventory Management System 1.0. The impacted element is an unknown function of the file /index.php?q=product. Performing manipulation of the argument PROID results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.
CVE-2025-13235 2 Itsourcecode, Janobe 2 Inventory Management System, Inventory Management System 2025-11-18 7.3 High
A vulnerability was determined in itsourcecode Inventory Management System 1.0. This affects an unknown function of the file /admin/login.php. Executing manipulation of the argument user_email can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-13236 2 Itsourcecode, Janobe 2 Inventory Management System, Inventory Management System 2025-11-18 6.3 Medium
A vulnerability was identified in itsourcecode Inventory Management System 1.0. This impacts an unknown function of the file /admin/products/index.php?view=edit. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used.
CVE-2022-28433 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Show&userid=.
CVE-2022-28421 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=posts&action=display&value=1&postid=.
CVE-2022-28436 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Hide&userid=.
CVE-2022-28437 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=type&userrole=Admin&userid=3.
CVE-2022-28434 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=siteoptions&social=edit&sid=2.
CVE-2022-28435 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/siteoptions.php&action=displaygoal&value=1&roleid=1.
CVE-2022-28431 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/siteoptions.php&social=remove&sid=2.
CVE-2022-28422 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/posts.php&action=edit.
CVE-2022-28432 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=siteoptions&social=display&value=0&sid=2.
CVE-2022-28429 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/inbox.php&action=delete&msgid=.
CVE-2022-28426 1 Janobe 1 Baby Care System 2025-11-18 9.8 Critical
Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/pagerole.php&action=edit&roleid=.