Export limit exceeded: 43487 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (43487 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-31957 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via rdms/admin/teams/view_team.php?id=.
CVE-2022-31956 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incident_reports/manage_report.php?id=.
CVE-2022-31953 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/admin/incident_reports/view_report.php?id=.
CVE-2022-31952 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL injection via /rdms/classes/Master.php?f=delete_incident.
CVE-2022-31951 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_respondent_type.
CVE-2022-31948 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_report.
CVE-2022-31946 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via /rdms/classes/Master.php?f=delete_team.
CVE-2022-31941 1 Rescue Dispatch Management System Project 1 Rescue Dispatch Management System 2024-11-21 9.8 Critical
Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via \rdms\admin?page=user\manage_user&id=.
CVE-2022-31912 1 Online Tutor Portal Site Project 1 Online Tutor Portal Site 2024-11-21 7.2 High
Online Tutor Portal Site v1.0 is vulnerable to SQL Injection via /otps/classes/Master.php?f=delete_team.
CVE-2022-31908 1 Student Registration And Fee Payment System Project 1 Student Registration And Fee Payment System 2024-11-21 7.2 High
Student Registration and Fee Payment System v1.0 is vulnerable to SQL Injection via /scms/student.php.
CVE-2022-31879 1 Online Fire Reporting System Project 1 Online Fire Reporting System 2024-11-21 8.8 High
Online Fire Reporting System 1.0 is vulnerable to SQL Injection via the date parameter.
CVE-2022-31856 1 Newsletter Module Project 1 Newsletter Module 2024-11-21 9.8 Critical
Newsletter Module v3.x was discovered to contain a SQL injection vulnerability via the zemez_newsletter_email parameter at /index.php.
CVE-2022-31788 1 Ideaco 1 Idealms 2024-11-21 9.8 Critical
IdeaLMS 2022 allows SQL injection via the IdeaLMS/ChatRoom/ClassAccessControl/6?isBigBlueButton=0&ClassID= pathname.
CVE-2022-31787 1 Ideaco 1 Ideatms 2024-11-21 9.8 Critical
IdeaTMS 2022 is vulnerable to SQL Injection via the PATH_INFO
CVE-2022-31768 1 Ibm 1 Infosphere Information Server 2024-11-21 9.8 Critical
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
CVE-2022-31759 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 5.5 Medium
AppLink has a vulnerability of accessing uninitialized pointers. Successful exploitation of this vulnerability may affect system availability.
CVE-2022-31752 1 Huawei 2 Emui, Magic Ui 2024-11-21 5.5 Medium
Missing authorization vulnerability in the system components. Successful exploitation of this vulnerability will affect confidentiality.
CVE-2022-31659 3 Linux, Microsoft, Vmware 6 Linux Kernel, Windows, Access Connector and 3 more 2024-11-21 7.2 High
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability. A malicious actor with administrator and network access can trigger a remote code execution.
CVE-2022-31625 3 Debian, Php, Redhat 4 Debian Linux, Php, Enterprise Linux and 1 more 2024-11-21 8.1 High
In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when using Postgres database extension, supplying invalid parameters to the parametrized query may lead to PHP attempting to free memory using uninitialized data as pointers. This could lead to RCE vulnerability or denial of service.
CVE-2022-31599 1 Nvidia 2 Dgx A100, Dgx A100 Firmware 2024-11-21 8.2 High
NVIDIA DGX A100 contains a vulnerability in SBIOS in the Ofbd, where a local user with elevated privileges can cause access to an uninitialized pointer, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components.