Vulnerable Environments

Browse our collection of pre-built vulnerable environments for security research and education. Each environment is containerized with Docker and comes with detailed documentation.

19 Results in SQL Injection

SQL InjectionRCE

Cacti graph_view.php SQL Injection Leads to RCE

Explore the Cacti graph_view.php SQL Injection Leads to RCE vulnerability and learn how to exploit it.

CVE-2023-39361CVE-2024-31459
Created 3 days ago
SQL Injection

ShowDoc 3.2.5 SQL Injection

Explore the ShowDoc 3.2.5 SQL Injection vulnerability and learn how to exploit it.

N/A
Created 10 months ago
SQL Injection

MeterSphere v1.15.4 Authenticated SQL Injection

Explore the MeterSphere v1.15.4 Authenticated SQL Injection vulnerability and learn how to exploit it.

CVE-2021-45788
Created a year ago
SQL Injection

CMS Made Simple (CMSMS) < 2.2.10 Unauthenticated SQL Injection

Explore the CMS Made Simple (CMSMS) < 2.2.10 Unauthenticated SQL Injection vulnerability and learn how to exploit it.

CVE-2019-9053
Created a year ago
SQL Injection

GeoServer OGC Filter SQL Injection

Explore the GeoServer OGC Filter SQL Injection vulnerability and learn how to exploit it.

CVE-2023-25157
Created 2 years ago
SQL InjectionRCE

YApi NoSQL Injection to Remote Command Execution

Explore the YApi NoSQL Injection to Remote Command Execution vulnerability and learn how to exploit it.

N/A
Created 2 years ago
SQL InjectionFramework

Django Trunc(kind) and Extract(lookup_name) SQL Injection

Explore the Django Trunc(kind) and Extract(lookup_name) SQL Injection vulnerability and learn how to exploit it.

CVE-2022-34265
Created 3 years ago
SQL InjectionCMS

ECShop 4.x collection_list SQL Injection

Explore the ECShop 4.x collection_list SQL Injection vulnerability and learn how to exploit it.

N/A
Created 4 years ago
SQL Injection

Rocket Chat Pre-Auth Blind NoSQL Injection

Explore the Rocket Chat Pre-Auth Blind NoSQL Injection vulnerability and learn how to exploit it.

CVE-2021-22911
Created 4 years ago
SQL InjectionFramework

Django QuerySet.order_by() SQL Injection

Explore the Django QuerySet.order_by() SQL Injection vulnerability and learn how to exploit it.

CVE-2021-35042
Created 4 years ago
SQL Injection

Apache Skywalking 8.3.0 SQL Injection

Explore the Apache Skywalking 8.3.0 SQL Injection vulnerability and learn how to exploit it.

N/A
Created 4 years ago
SQL InjectionFramework

Django GIS functions and aggregates on Oracle SQL Injection

Explore the Django GIS functions and aggregates on Oracle SQL Injection vulnerability and learn how to exploit it.

CVE-2020-9402
Created 5 years ago
SQL InjectionFramework

Django JSONField/HStoreField SQL Injection

Explore the Django JSONField/HStoreField SQL Injection vulnerability and learn how to exploit it.

CVE-2019-14234
Created 6 years ago
SQL InjectionCMS

Magento 2.2 SQL Injection

Explore the Magento 2.2 SQL Injection vulnerability and learn how to exploit it.

N/A
Created 6 years ago
SQL InjectionRCECMS

ECShop 2.x/3.x SQL Injection/Arbitrary Code Execution

Explore the ECShop 2.x/3.x SQL Injection/Arbitrary Code Execution vulnerability and learn how to exploit it.

N/A
Created 7 years ago
SQL InjectionCMS

Drupal < 7.32 "Drupalgeddon" SQL Injection

Explore the Drupal < 7.32 "Drupalgeddon" SQL Injection vulnerability and learn how to exploit it.

CVE-2014-3704
Created 7 years ago
SQL Injection

Zabbix latest.php SQL Injection

Explore the Zabbix latest.php SQL Injection vulnerability and learn how to exploit it.

CVE-2016-10134
Created 7 years ago
SQL InjectionInfo Disclosure

ThinkPHP5 SQL Injection Vulnerabilities/Information Leakage

Explore the ThinkPHP5 SQL Injection Vulnerabilities/Information Leakage vulnerability and learn how to exploit it.

N/A
Created 8 years ago
SQL InjectionCMS

Joomla 3.7.0 SQL Injection

Explore the Joomla 3.7.0 SQL Injection vulnerability and learn how to exploit it.

CVE-2017-8917
Created 8 years ago