Show filters
4,615 Total Results
Displaying 161-170 of 4,615
Sort by:
Attacker Value
Unknown

CVE-2023-3038

Disclosure Date: October 04, 2023 (last updated February 25, 2025)
SQL injection vulnerability in HelpDezk Community affecting version 1.1.10. This vulnerability could allow a remote attacker to send a specially crafted SQL query to the rows parameter of the jsonGrid route and extract all the information stored in the application.
Attacker Value
Unknown

CVE-2023-39647

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS Category Product module for PrestaShop. In the module “Theme Volty CMS Category Product” (tvcmscategoryproduct) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-39651

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS BrandList module for PrestaShop In the module “Theme Volty CMS BrandList” (tvcmsbrandlist) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-39649

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS Category Slider module for PrestaShop. In the module “Theme Volty CMS Category Slider” (tvcmscategoryslider) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-39648

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS Testimonial module for PrestaShop. In the module “Theme Volty CMS Testimonial” (tvcmstestimonial) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-39646

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS Category Chain Slider module for PrestaShop. In the module “Theme Volty CMS Category Chain Slide"(tvcmscategorychainslider) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-39645

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
Improper neutralization of SQL parameter in Theme Volty CMS Payment Icon module for PrestaShop. In the module “Theme Volty CMS Payment Icon” (tvcmspaymenticon) up to version 4.0.1 from Theme Volty for PrestaShop, a guest can perform SQL injection in affected versions.
Attacker Value
Unknown

CVE-2023-2681

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
An SQL Injection vulnerability has been found on Jorani version 1.0.0. This vulnerability allows an authenticated remote user, with low privileges, to send queries with malicious SQL code on the "/leaves/validate" path and the “id” parameter, managing to extract arbritary information from the database.
Attacker Value
Unknown

CVE-2023-5350

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
SQL Injection in GitHub repository salesagility/suitecrm prior to 7.14.1.
Attacker Value
Unknown

CVE-2023-4103

Disclosure Date: October 03, 2023 (last updated February 25, 2025)
QSige statistics are affected by a remote SQLi vulnerability. It has been identified that the web application does not correctly filter input parameters, allowing SQL injections, DoS or information disclosure. As a prerequisite, it is necessary to log into the application.