Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8872

8872 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-5246 Campcodes Online Hospital Management System query-details.php sql injection — Online Hospital Management System 7.3 High2025-05-27
CVE-2025-5232 PHPGurukul Student Study Center Management System report.php sql injection — Student Study Center Management System 4.7 Medium2025-05-27
CVE-2025-5231 PHPGurukul Company Visitor Management System forgot-password.php sql injection — Company Visitor Management System 7.3 High2025-05-27
CVE-2025-5230 PHPGurukul Online Nurse Hiring System bwdates-report-details.php sql injection — Online Nurse Hiring System 7.3 High2025-05-27
CVE-2025-5229 Campcodes Online Hospital Management System view-patient.php sql injection — Online Hospital Management System 7.3 High2025-05-27
CVE-2025-5227 PHPGurukul Small CRM manage-tickets.php sql injection — Small CRM 7.3 High2025-05-27
CVE-2025-5226 PHPGurukul Small CRM change-password.php sql injection — Small CRM 7.3 High2025-05-27
CVE-2025-5225 Campcodes Advanced Online Voting System index.php sql injection — Advanced Online Voting System 7.3 High2025-05-27
CVE-2025-5224 Campcodes Online Hospital Management System add-doctor.php sql injection — Online Hospital Management System 7.3 High2025-05-27
CVE-2025-5216 PHPGurukul Student Record System login.php sql injection — Student Record System 7.3 High2025-05-27
CVE-2025-48743 SIGB PMB SQL注入漏洞 — PMB 5.3 Medium2025-05-27
CVE-2025-5214 Kashipara Responsive Online Learing Platform course_detail_user_new.php sql injection — Responsive Online Learing Platform 7.3 High2025-05-26
CVE-2025-5213 projectworlds Responsive E-Learning System delete_file.php sql injection — Responsive E-Learning System 7.3 High2025-05-26
CVE-2025-5212 PHPGurukul Employee Record Management System editempexp.php sql injection — Employee Record Management System 7.3 High2025-05-26
CVE-2025-5211 PHPGurukul Employee Record Management System myprofile.php sql injection — Employee Record Management System 7.3 High2025-05-26
CVE-2025-5210 PHPGurukul Employee Record Management System loginerms.php sql injection — Employee Record Management System 7.3 High2025-05-26
CVE-2025-5208 SourceCodester Online Hospital Management System check_availability.php sql injection — Online Hospital Management System 7.3 High2025-05-26
CVE-2025-5207 SourceCodester Client Database Management System superadmin_update_profile.php sql injection — Client Database Management System 4.7 Medium2025-05-26
CVE-2025-5206 Pixelimity Installation index.php sql injection — Pixelimity 4.7 Medium2025-05-26
CVE-2025-5205 1000 Projects Daily College Class Work Report Book dcwr_entry.php sql injection — Daily College Class Work Report Book 7.3 High2025-05-26
CVE-2025-40666 Time-based blind SQL injection vulnerability in TCMAN GIM v11 — GIM 9.8AICriticalAI2025-05-26
CVE-2025-40665 Time-based blind SQL injection vulnerability in TCMAN GIM v11 — GIM 9.8AICriticalAI2025-05-26
CVE-2025-5176 Realce Tecnologia Queue Ticket Kiosk Admin Login Page index.php sql injection — Queue Ticket Kiosk 7.3 High2025-05-26
CVE-2025-5172 Econtrata valida sql injection — Econtrata 7.3 High2025-05-26
CVE-2025-5170 llisoft MTA Maita Training System AdminShitiController.java AdminShitiListRequestVo sql injection — MTA Maita Training System 6.3 Medium2025-05-26
CVE-2025-5155 qianfox FoxCMS Article.php batchCope sql injection — FoxCMS 6.3 Medium2025-05-25
CVE-2025-5152 Chanjet CRM newActivityedit.php sql injection — CRM 6.3 Medium2025-05-25
CVE-2025-5128 ScriptAndTools Real-Estate-website-in-PHP Admin Login Panel admin sql injection — Real-Estate-website-in-PHP 7.3 High2025-05-24
CVE-2025-5119 Emlog Pro api_controller.php sql injection — Pro 7.3 High2025-05-23
CVE-2025-31056 WordPress WhatsCart plugin <= 1.1.0 - SQL Injection vulnerability — WhatsCart - Whatsapp Abandoned Cart Recovery, Order Notifications, Chat Box, OTP for WooCommerce 9.3 Critical2025-05-23

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8872 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.