Show filters
55 Total Results
Displaying 11-20 of 55
Sort by:
Attacker Value
Unknown

CVE-2022-23556

Disclosure Date: December 22, 2022 (last updated November 08, 2023)
CodeIgniter is a PHP full-stack web framework. This vulnerability may allow attackers to spoof their IP address when the server is behind a reverse proxy. This issue has been patched, please upgrade to version 4.2.11 or later, and configure `Config\App::$proxyIPs`. As a workaround, do not use `$request->getIPAddress()`.
Attacker Value
Unknown

CVE-2022-40835

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php. Note: Multiple third parties have disputed this as not a valid vulnerability
Attacker Value
Unknown

CVE-2022-40834

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_not_like() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40833

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_where_in() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40832

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php having() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40831

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php like() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40830

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php where_not_in() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40829

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_like() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40828

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php or_where_not_in() function. Note: Multiple third parties have disputed this as not a valid vulnerability.
Attacker Value
Unknown

CVE-2022-40827

Disclosure Date: October 07, 2022 (last updated May 18, 2024)
B.C. Institute of Technology CodeIgniter <=3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php where() function. Note: Multiple third parties have disputed this as not a valid vulnerability.