Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-10996 1000 Projects Bookstore Management System process_category_edit.php sql injection — Bookstore Management System 7.3 High2024-11-08
CVE-2024-10995 Codezips Hospital Appointment System removeDoctorResult.php sql injection — Hospital Appointment System 7.3 High2024-11-08
CVE-2024-10991 Codezips Hospital Appointment System editBranchResult.php sql injection — Hospital Appointment System 7.3 High2024-11-08
CVE-2024-10990 SourceCodester Online Veterinary Appointment System view_service.php sql injection — Online Veterinary Appointment System 6.3 Medium2024-11-08
CVE-2024-10989 code-projects E-Health Care System detail.php sql injection — E-Health Care System 6.3 Medium2024-11-08
CVE-2024-10988 code-projects E-Health Care System doctor_login.php sql injection — E-Health Care System 7.3 High2024-11-08
CVE-2024-10987 code-projects E-Health Care System user_appointment.php sql injection — E-Health Care System 6.3 Medium2024-11-08
CVE-2024-10969 1000 Projects Bookstore Management System Login login_process.php sql injection — Bookstore Management System 7.3 High2024-11-07
CVE-2024-10968 1000 Projects Bookstore Management System contact_process.php sql injection — Bookstore Management System 7.3 High2024-11-07
CVE-2024-10967 code-projects E-Health Care System delete_user_appointment_request.php sql injection — E-Health Care System 7.3 High2024-11-07
CVE-2024-45794 SQL Injection in CreateUser API in devtron — devtron 8.3 High2024-11-07
CVE-2024-10947 Guangzhou Tuchuang Computer Software Development Interlib Library Cluster Automation Management System BatchOrder sql injection — Interlib Library Cluster Automation Management System 4.7 Medium2024-11-07
CVE-2024-10946 Guangzhou Tuchuang Computer Software Development Interlib Library Cluster Automation Management System SysLib sql injection — Interlib Library Cluster Automation Management System 4.7 Medium2024-11-07
CVE-2024-20536 Cisco Nexus Dashboard Fabric Controller SQL Injection Vulnerability — Cisco Data Center Network Manager 8.8 High2024-11-06
CVE-2024-50332 Authenticated Blind SQL Injection in DeleteRelationShip in SuiteCRM — SuiteCRM 8.8 High2024-11-05
CVE-2024-49773 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in SuiteCRM — SuiteCRM 5.3 Medium2024-11-05
CVE-2024-49772 Authenticated SQL injection in AM_ProjectTemplates controller in SuiteCRM — SuiteCRM 8.8 High2024-11-05
CVE-2023-29119 Unauthorized SQLite Injection — JuiceBox Pro 3.0 22kW Cellular 9.6 Critical2024-11-05
CVE-2023-29118 Unauthorized SQLite Injection in Enel X Juicebox — JuiceBox Pro 3.0 22kW Cellular 9.6 Critical2024-11-05
CVE-2024-10845 1000 Projects Bookstore Management System book_detail.php sql injection — Bookstore Management System 7.3 High2024-11-05
CVE-2024-10844 1000 Projects Bookstore Management System search.php sql injection — Bookstore Management System 7.3 High2024-11-05
CVE-2024-10841 romadebrian WEB-Sekolah Mail Proses_Kirim.php sql injection — WEB-Sekolah 5.5 Medium2024-11-05
CVE-2024-10687 Photos, Files, YouTube, Twitter, Instagram, TikTok, Ecommerce Contest Gallery – Upload, Vote, Sell via PayPal, Social Share Buttons <= 24.0.3 - Unauthenticated SQL Injection — Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe 9.8 Critical2024-11-05
CVE-2024-9459 SQL Injection — Exchange Reporter Plus 8.3 High2024-11-05
CVE-2024-10810 code-projects E-Health Care System app_request.php sql injection — E-Health Care System 6.3 Medium2024-11-05
CVE-2024-10809 code-projects E-Health Care System chat.php sql injection — E-Health Care System 6.3 Medium2024-11-05
CVE-2024-10808 code-projects E-Health Care System req_detail.php sql injection — E-Health Care System 6.3 Medium2024-11-05
CVE-2024-10805 code-projects University Event Management System doedit.php sql injection — University Event Management System 6.3 Medium2024-11-04
CVE-2024-10791 Codezips Hospital Appointment System doctorAction.php sql injection — Hospital Appointment System 7.3 High2024-11-04
CVE-2024-51626 WordPress Woocommerce Quote Calculator plugin <= 1.1 - SQL Injection vulnerability — Woocommerce Quote Calculator 8.5 High2024-11-04

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.