Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-4265 PHPGurukul Emergency Ambulance Hiring Portal contact-us.php sql injection — Emergency Ambulance Hiring Portal 7.3 High2025-05-05
CVE-2025-4264 PHPGurukul Emergency Ambulance Hiring Portal edit-ambulance.php sql injection — Emergency Ambulance Hiring Portal 7.3 High2025-05-05
CVE-2025-4263 PHPGurukul Online DJ Booking Management System booking-search.php sql injection — Online DJ Booking Management System 7.3 High2025-05-05
CVE-2025-4262 PHPGurukul Online DJ Booking Management System user-search.php sql injection — Online DJ Booking Management System 7.3 High2025-05-05
CVE-2025-4250 code-projects Nero Social Networking Site index.php sql injection — Nero Social Networking Site 7.3 High2025-05-04
CVE-2025-4249 PHPGurukul e-Diary Management System manage-categories.php sql injection — e-Diary Management System 7.3 High2025-05-04
CVE-2025-4248 SourceCodester Simple To-Do List System complete_task.php sql injection — Simple To-Do List System 6.3 Medium2025-05-04
CVE-2025-4247 SourceCodester Simple To-Do List System delete_task.php sql injection — Simple To-Do List System 6.3 Medium2025-05-04
CVE-2025-4244 code-projects Online Bus Reservation System seatlocation.php sql injection — Online Bus Reservation System 6.3 Medium2025-05-03
CVE-2025-4243 code-projects Online Bus Reservation System print.php sql injection — Online Bus Reservation System 6.3 Medium2025-05-03
CVE-2025-4242 PHPGurukul Online Birth Certificate System between-dates-report.php sql injection — Online Birth Certificate System 7.3 High2025-05-03
CVE-2025-4241 PHPGurukul Teacher Subject Allocation Management System search.php sql injection — Teacher Subject Allocation Management System 7.3 High2025-05-03
CVE-2025-4226 PHPGurukul/Campcodes Cyber Cafe Management System add-computer.php sql injection — Cyber Cafe Management System 7.3 High2025-05-03
CVE-2025-4214 PHPGuruku Online DJ Booking Management System booking-bwdates-reports-details.php sql injection — Online DJ Booking Management System 7.3 High2025-05-02
CVE-2025-4213 PHPGurukul Online Birth Certificate System search.php sql injection — Online Birth Certificate System 7.3 High2025-05-02
CVE-2025-4204 Ultimate Auction Pro <= 1.5.2 - Unauthenticated SQL Injection via 'auction_id' — Ultimate Auction Pro 7.5 High2025-05-02
CVE-2025-2812 SQLi in Mydata Informatics' Ticket Sales Automation — Ticket Sales Automation 9.8 Critical2025-05-02
CVE-2024-12023 FULL – Cliente 3.1.5 - 3.1.25 - Authenticated (Subscriber+) SQL Injection — FULL – Cliente 6.5 Medium2025-05-02
CVE-2024-13322 Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager <= 4.88 - Unauthenticated SQL Injection — Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager 7.5 High2025-05-02
CVE-2024-13344 Advance Seat Reservation Management for WooCommerce <= 3.3 - Unauthenticated SQL Injection — Advance Seat Reservation Management for WooCommerce 7.5 High2025-05-02
CVE-2025-3708 Le-show Medical Practice Management System - SQL Injection — Le-show 9.8 Critical2025-05-02
CVE-2025-3707 Sunnet eHRD CTMS - SQL Injection — eHRD CTMS 6.5 Medium2025-05-02
CVE-2025-4197 code-projects Patient Record Management System edit_xpatient.php sql injection — Patient Record Management System 6.3 Medium2025-05-02
CVE-2025-4196 SourceCodester Patient Record Management System birthing.php sql injection — Patient Record Management System 6.3 Medium2025-05-02
CVE-2025-4195 itsourcecode Gym Management System ajax.php sql injection — Gym Management System 7.3 High2025-05-02
CVE-2025-4193 itsourcecode Restaurant Management System category_update.php sql injection — Restaurant Management System 7.3 High2025-05-02
CVE-2025-4192 itsourcecode Restaurant Management System category_save.php sql injection — Restaurant Management System 7.3 High2025-05-02
CVE-2025-4191 PHPGurukul Employee Record Management System editmyeducation.php sql injection — Employee Record Management System 7.3 High2025-05-02
CVE-2025-4176 PHPGurukul Blood Bank & Donor Management System request-received-bydonar.php sql injection — Blood Bank & Donor Management System 7.3 High2025-05-01
CVE-2025-4174 PHPGurukul COVID19 Testing Management System login.php sql injection — COVID19 Testing Management System 7.3 High2025-05-01

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.