Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-2054 code-projects Blood Bank Management System edit_state.php sql injection — Blood Bank Management System 4.7 Medium2025-03-07
CVE-2025-2053 PHPGurukul Apartment Visitors Management System visitor-detail.php sql injection — Apartment Visitors Management System 6.3 Medium2025-03-07
CVE-2025-2052 PHPGurukul Apartment Visitors Management System forgot-password.php sql injection — Apartment Visitors Management System 6.3 Medium2025-03-07
CVE-2025-2051 PHPGurukul Apartment Visitors Management System search-visitor.php sql injection — Apartment Visitors Management System 6.3 Medium2025-03-07
CVE-2025-2050 PHPGurukul User Registration & Login and User Management System login.php sql injection — User Registration & Login and User Management System 7.3 High2025-03-06
CVE-2025-2046 SourceCodester Best Employee Management System print1.php sql injection — Best Employee Management System 6.3 Medium2025-03-06
CVE-2025-2044 code-projects Blood Bank Management System delete_bloodGroup.php sql injection — Blood Bank Management System 4.7 Medium2025-03-06
CVE-2025-2041 s-a-zhd Ecommerce-Website-using-PHP shop.php sql injection — Ecommerce-Website-using-PHP 6.3 Medium2025-03-06
CVE-2025-2039 code-projects Blood Bank Management System delete_members.php sql injection — Blood Bank Management System 4.7 Medium2025-03-06
CVE-2025-2037 code-projects Blood Bank Management System delete_requester.php sql injection — Blood Bank Management System 6.3 Medium2025-03-06
CVE-2025-2036 s-a-zhd Ecommerce-Website-using-PHP details.php sql injection — Ecommerce-Website-using-PHP 6.3 Medium2025-03-06
CVE-2025-2034 PHPGurukul Pre-School Enrollment System edit-class.php sql injection — Pre-School Enrollment System 7.3 High2025-03-06
CVE-2025-2033 code-projects Blood Bank Management System view_donor.php sql injection — Blood Bank Management System 6.3 Medium2025-03-06
CVE-2025-2030 Seeyon Zhiyuan Interconnect FE Collaborative Office Platform addUser.jsp sql injection — Zhiyuan Interconnect FE Collaborative Office Platform 7.3 High2025-03-06
CVE-2024-12146 SQLi in Finder Fire Safety's Finder ERP/CRM (New System) — Finder ERP/CRM (New System) 7.5 High2025-03-06
CVE-2024-12144 SQLi in Finder Fire Safety's Finder ERP/CRM (Old System) — Finder ERP/CRM (Old System) 9.8 Critical2025-03-06
CVE-2025-22212 Extension - tassos.gr - SQL injection in Convert Forms component version 1.0.0-1.0.0 - 4.4.9 for Joomla — Convert Forms component for Joomla 7.2 -2025-03-05
CVE-2024-13147 SQLi in Merkur Software's B2B Login Panel — B2B Login Panel 9.8 Critical2025-03-05
CVE-2024-12097 SQLi in Boceksoft Informatics' E-Travel — E-Travel 9.8 Critical2025-03-05
CVE-2025-1702 Ultimate Member <= 2.10.0 - Unauthenticated SQL Injection via search Parameter — Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin 7.5 High2025-03-05
CVE-2024-13809 Hero Slider - WordPress Slider Plugin <= 1.3.5 - Authenticated (Subscriber+) SQL Injection — Hero Slider - WordPress Slider Plugin 6.5 Medium2025-03-05
CVE-2024-13778 Hero Mega Menu - Responsive WordPress Menu Plugin <= 1.16.5 - Authenticated (Subscriber+) SQL Injection — Hero Mega Menu - Responsive WordPress Menu Plugin 6.5 Medium2025-03-05
CVE-2025-1966 PHPGurukul Pre-School Enrollment System index.php sql injection — Pre-School Enrollment System 7.3 High2025-03-05
CVE-2025-1965 projectworlds Online Hotel Booking login.php sql injection — Online Hotel Booking 7.3 High2025-03-05
CVE-2025-1964 projectworlds Online Hotel Booking booknow.php sql injection — Online Hotel Booking 7.3 High2025-03-05
CVE-2025-1963 projectworlds Online Hotel Booking reservation.php sql injection — Online Hotel Booking 7.3 High2025-03-05
CVE-2025-1962 projectworlds Online Hotel Booking addroom.php sql injection — Online Hotel Booking 7.3 High2025-03-04
CVE-2025-1961 SourceCodester Best Church Management Software web_crud.php sql injection — Best Church Management Software 6.3 Medium2025-03-04
CVE-2025-1959 Codezips Gym Management System change_s_pwd.php sql injection — Gym Management System 7.3 High2025-03-04
CVE-2025-1958 aaluoxiang oa_system address-mapper.xml sql injection — oa_system 6.3 Medium2025-03-04

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.