|
223351
|
9.8 |
CRITICAL
Network
|
bedita
|
bedita
|
BEdita through 4.0.0-RC2 allows SQL injection during a save operation for a relation with parameters.
|
CWE-89
SQL Injection
|
CVE-2019-15570
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223352
|
9.8 |
CRITICAL
Network
|
gov
|
ccd-data-store-api
|
HM Courts & Tribunals ccd-data-store-api before 2019-06-10 allows SQL injection, related to SearchQueryFactoryOperation.java and SortDirection.java.
|
CWE-89
SQL Injection
|
CVE-2019-15569
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223353
|
9.8 |
CRITICAL
Network
|
idseq
|
idseq-web
|
idseq-web before 2019-07-01 in Infectious Disease Sequencing Platform IDseq allows SQL injection via tax_levels.
|
CWE-89
SQL Injection
|
CVE-2019-15568
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223354
|
9.8 |
CRITICAL
Network
|
openforis
|
arena
|
OpenForis Arena before 2019-05-07 allows SQL injection in the sorting feature.
|
CWE-89
SQL Injection
|
CVE-2019-15567
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223355
|
9.8 |
CRITICAL
Network
|
alfresco
|
alfresco
|
The Alfresco application before 1.8.7 for Android allows SQL injection in HistorySearchProvider.java.
|
CWE-89
SQL Injection
|
CVE-2019-15566
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223356
|
9.8 |
CRITICAL
Network
|
webimpacto
|
icommktconnector
|
The ICOMMKT connector before 1.0.7 for PrestaShop allows SQL injection in icommktconnector.php.
|
CWE-89
SQL Injection
|
CVE-2019-15565
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223357
|
9.8 |
CRITICAL
Network
|
compassionuk
|
compassion_switzerland
|
The Compassion Switzerland addons 10.01.4 for Odoo allow SQL injection in models/partner_compassion.py.
|
CWE-89
SQL Injection
|
CVE-2019-15564
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223358
|
9.8 |
CRITICAL
Network
|
ohdsi
|
webapi
|
Observational Health Data Sciences and Informatics (OHDSI) WebAPI before 2.7.2 allows SQL injection in FeatureExtractionService.java.
|
CWE-89
SQL Injection
|
CVE-2019-15563
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223359
|
9.8 |
CRITICAL
Network
|
servo
|
smallvec
|
An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-15554
|
2024-11-21 13:29 |
2019-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223360
|
9.8 |
CRITICAL
Network
|
gorm
|
gorm
|
GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application,…
|
CWE-89
SQL Injection
|
CVE-2019-15562
|
2024-11-21 13:29 |
2019-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|