Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-11649 1000 Projects Beauty Parlour Management System search-appointment.php sql injection — Beauty Parlour Management System 7.3 High2024-11-25
CVE-2024-11648 1000 Projects Beauty Parlour Management System add-customer.php sql injection — Beauty Parlour Management System 7.3 High2024-11-25
CVE-2024-11647 1000 Projects Beauty Parlour Management System view-appointment.php sql injection — Beauty Parlour Management System 7.3 High2024-11-25
CVE-2024-11646 1000 Projects Beauty Parlour Management System edit-services.php sql injection — Beauty Parlour Management System 7.3 High2024-11-24
CVE-2024-11632 code-projects Simple Car Rental System book_car.php sql injection — Simple Car Rental System 7.3 High2024-11-23
CVE-2023-7299 DataGear resolveSql sql injection — DataGear 6.3 Medium2024-11-23
CVE-2024-11631 itsourcecode Tailoring Management System expedit.php sql injection — Tailoring Management System 6.3 Medium2024-11-23
CVE-2024-8355 Visteon Infotainment System DeviceManager iAP Serial Number SQL Injection Vulnerability — Infotainment 6.8 -2024-11-22
CVE-2023-52335 Advantech iView ConfigurationServlet SQL Injection Information Disclosure Vulnerability — iView 7.5 -2024-11-22
CVE-2024-7882 SQLi in Special Minds' e-Commerce — e-Commerce 6.5 Medium2024-11-22
CVE-2024-7837 SQLi in Firmanet Software's ERP — ERP 8.2 High2024-11-22
CVE-2024-49588 Multiple authenticated SQL injections in oracle-sidecar — com.palantir.srx.prometheus.sls-oracle-sidecar:sls-oracle-sidecar 6.8 Medium2024-11-21
CVE-2024-11592 1000 Projects Beauty Parlour Management System about-us.php sql injection — Beauty Parlour Management System 7.3 High2024-11-21
CVE-2024-11591 1000 Projects Beauty Parlour Management System add-services.php sql injection — Beauty Parlour Management System 7.3 High2024-11-21
CVE-2024-7026 SQLi in Teknogis Informatics' Closed Circuit Vehicle Tracking Software — Closed Circuit Vehicle Tracking Software 7.5 High2024-11-21
CVE-2024-11590 1000 Projects Bookstore Management System forget_password_process.php sql injection — Bookstore Management System 7.3 High2024-11-21
CVE-2024-11589 itsourcecode Tailoring Management System expcatedit.php sql injection — Tailoring Management System 6.3 Medium2024-11-21
CVE-2024-10400 Tutor LMS <= 2.7.6 - Unauthenticated SQL Injection via rating_filter — Tutor LMS – eLearning and online course solution 7.5 High2024-11-21
CVE-2024-11487 Code4Berry Decoration Management System Between Dates Reports btndates_report.php sql injection — Decoration Management System 6.3 Medium2024-11-20
CVE-2024-11179 MStore API <= 4.15.7 - Authenticated (Subscriber+) SQL Injection — MStore API – Create Native Android & iOS Apps On The Cloud 6.5 Medium2024-11-20
CVE-2024-52360 IBM Concert Software SQL injection — Concert Software 7.6 High2024-11-19
CVE-2024-52431 WordPress WP Video Robot plugin <= 1.20.0 - SQL Injection vulnerability — WordPress Video Robot - The Ultimate Video Importer 9.3 Critical2024-11-18
CVE-2024-52435 WordPress Premium Packages – Sell Digital Products Securely plugin <= 6.0.5 - SQL Injection vulnerability — WPDM – Premium Packages 7.6 High2024-11-18
CVE-2024-52436 WordPress Post SMTP plugin <= 2.9.9 - SQL Injection vulnerability — Post SMTP 7.6 High2024-11-18
CVE-2024-3370 SQLi in Egebilgi Software's Website Template — Website Template 9.8AICriticalAI2024-11-18
CVE-2024-49574 SQL Injection — ADAudit Plus 8.3 High2024-11-18
CVE-2024-11305 Altenergy Power Control Software status_zigbee get_status_zigbee sql injection — Power Control Software 6.3 Medium2024-11-18
CVE-2024-9887 Login using WordPress Users ( WP as SAML IDP ) <= 1.15.6 - Authenticated (Administrator+) SQL Injection — SAML IDP (Identity Provider) – Login with Website Users 7.2 High2024-11-16
CVE-2024-10645 Blogger 301 Redirect <= 2.5.3 - Unauthenticated SQL Injection via br — Blogger 301 Redirect 7.5 High2024-11-16
CVE-2024-11258 1000 Projects Beauty Parlour Management System index.php sql injection — Beauty Parlour Management System 7.3 High2024-11-15

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.