CVE-2022-3973 A critical vulnerability has been found in Pingkon HMS-PHP Data Pump Metadata. The manipulation of the argument uname/pass leads to sql injection.
The researcher of the problem discovered by the RedTeam Pentesting security group states that the injectable sql code is as follows: Injectable sql code: [Select]
CVE-2022-3972 An issue was found in Pingkon HMS-PHP. It is critical and affects admin/adminlogin.php processing. The argument uname/pass can be manipulated to lead to sql injection.
This issue was found in Pingkon PHP. It has been rated as moderate. It may be exploited by hackers to cause a denial-of-service.
CVE-2022-40750 - IBM WebSphere Application Server 8.5 and 9. Cross-Site Scripting Vulnerability – Deep Dive, Exploit Example, and Mitigation
---
Introduction
In today's world, web applications are at the heart of almost every business. But with popularity comes risk. IBM WebSphere Application Server,
CVE-2022-3956 - Critical SQL Injection in tsruban HHIMS 2.1 Patient Portrait Handler (VDB-213462) – What You Need to Know
---
Introduction
A dangerous flaw, tracked as CVE-2022-3956, was discovered in tsruban HHIMS 2.1, a healthcare management system. This vulnerability, marked as critical,
CVE-2022-3955 - Critical SQL Injection in tholum crm42's Login – How It Works and How Attackers Exploit It
In late 2022, a critical security flaw was found in tholum crm42, a little-known customer relationship management (CRM) system. The flaw was officially cataloged
Episode
00:00:00
00:00:00