Online Diagnostic LAB Management System Project
Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System: vulnerabilidades y CVE
Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System tiene 26 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE26
Últimos 12 meses0
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-43163 | Alta (7.2) | 0.76% | — | 17 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /clients/view_client.php. |
| CVE-2022-43162 | Alta (7.2) | 0.76% | — | 17 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /tests/view_test.php. |
| CVE-2022-43135 | Crítica (9.8) | 0.79% | — | 16 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /diagnostic/login.php. |
| CVE-2022-43058 | Crítica (9.8) | 0.68% | — | 9 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms//classes/Master.php?f=delete_activity. |
| CVE-2022-43052 | Alta (7.2) | 0.76% | — | 7 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/classes/Users.php?f=delete. |
| CVE-2022-43051 | Alta (7.2) | 0.76% | — | 7 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/classes/Users.php?f=delete_test. |
| CVE-2022-43063 | Alta (7.2) | 0.76% | — | 3 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Users.php?f=delete_client. |
| CVE-2022-43062 | Alta (7.2) | 0.76% | — | 3 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_appointment. |
| CVE-2022-43068 | Alta (7.2) | 0.76% | — | 2 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_reservation. |
| CVE-2022-43066 | Alta (7.2) | 0.86% | — | 2 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/classes/Master.php?f=delete_message. |
| CVE-2022-43227 | Alta (7.2) | 0.76% | — | 2 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/admin/?page=appointments/view_appointment. |
| CVE-2022-43226 | Alta (8.8) | 0.87% | — | 2 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/?page=appointments/view_appointment. |
| CVE-2022-43127 | Alta (7.2) | 0.76% | — | 1 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /appointments/update_status.php. |
| CVE-2022-43126 | Alta (7.2) | 0.76% | — | 1 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/tests/manage_test.php. |
| CVE-2022-43125 | Alta (7.2) | 0.76% | — | 1 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /appointments/manage_appointment.php. |
| CVE-2022-43124 | Alta (7.2) | 0.76% | — | 1 nov 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=user/manage_user. |
| CVE-2022-42064 | Crítica (9.8) | 1.2% | — | 14 oct 2022 | Online Diagnostic Lab Management System version 1.0 remote exploit that bypasses login with SQL injection and then uploads a shell. |
| CVE-2022-41534 | Alta (7.2) | 1.3% | — | 13 oct 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /php_action/createOrder.php. This vulnerability allows attackers to execute arbitrary code… |
| CVE-2022-41533 | Alta (7.2) | 1.1% | — | 13 oct 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /php_action/editProductImage.php. This vulnerability allows attackers to execute arbitrary… |
| CVE-2022-42074 | Alta (7.2) | 0.87% | — | 7 oct 2022 | Online Diagnostic Lab Management System v1.0 is vulnerable to SQL Injection via /diagnostic/editcategory.php?id=. |
| CVE-2022-42073 | Alta (7.2) | 0.87% | — | 7 oct 2022 | Online Diagnostic Lab Management System v1.0 is vulnerable to SQL Injection via /diagnostic/editclient.php?id=. |
| CVE-2022-41513 | Alta (7.2) | 0.87% | — | 7 oct 2022 | Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /diagnostic/edittest.php. |
| CVE-2022-41512 | Alta (7.2) | 1.3% | — | 7 oct 2022 | An arbitrary file upload vulnerability in the component /php_action/editFile.php of Online Diagnostic Lab Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file. |
| CVE-2022-37152 | Crítica (9.8) | 1.1% | — | 26 ago 2022 | An issue was discovered in Online Diagnostic Lab Management System 1.0, There is a SQL injection vulnerability via "dob" parameter in "/classes/Users.php?f=save_client" |
| CVE-2022-37151 | Alta (7.5) | 0.98% | — | 26 ago 2022 | There is an unauthorized access vulnerability in Online Diagnostic Lab Management System 1.0. |
| CVE-2022-37150 | Media (5.4) | 0.57% | — | 26 ago 2022 | An issue was discovered in Online Diagnostic Lab Management System 1.0. There is a stored XSS vulnerability via firstname, address, middlename, lastname , gender, email, contact parameters. |