Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8874

8874 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-10656 Tongda OA 2017 apply.php sql injection — OA 2017 6.3 Medium2024-11-01
CVE-2024-10655 Tongda OA 2017 new.php sql injection — OA 2017 6.3 Medium2024-11-01
CVE-2024-7456 SQL Injection in lunary-ai/lunary — lunary-ai/lunary 9.8AICriticalAI2024-11-01
CVE-2024-10619 Tongda OA 2017 next_detail.php sql injection — OA 2017 6.3 Medium2024-11-01
CVE-2024-10618 Tongda OA 2017 record_detail.php sql injection — OA 2017 6.3 Medium2024-11-01
CVE-2024-10617 Tongda OA check_seal.php sql injection — OA 6.3 Medium2024-11-01
CVE-2024-10616 Tongda OA webSignSubmit.php sql injection — OA 6.3 Medium2024-11-01
CVE-2024-10615 Tongda OA 2017 delete_data_attach.php sql injection — OA 2017 6.3 Medium2024-11-01
CVE-2024-10613 ESAFENET CDG SystemEncryptPolicyService.java delSystemEncryptPolicy sql injection — CDG 6.3 Medium2024-11-01
CVE-2024-10612 ESAFENET CDG HookInvalidCourseService.java removeHookInvalidCourse sql injection — CDG 6.3 Medium2024-11-01
CVE-2024-10611 ESAFENET CDG PrintScreenListService.java delProtocol sql injection — CDG 6.3 Medium2024-11-01
CVE-2024-10610 ESAFENET CDG ProtocolService.java delProtocol sql injection — CDG 6.3 Medium2024-11-01
CVE-2024-10609 itsourcecode Tailoring Management System Project typeadd.php sql injection — Tailoring Management System Project 6.3 Medium2024-11-01
CVE-2024-10608 code-projects Courier Management System login.php sql injection — Courier Management System 7.3 High2024-11-01
CVE-2024-10607 code-projects Courier Management System track-result.php sql injection — Courier Management System 7.3 High2024-11-01
CVE-2024-10602 Tongda OA 2017 data_picker_link.php sql injection — OA 2017 6.3 Medium2024-10-31
CVE-2024-10601 Tongda OA 2017 delete.php sql injection — OA 2017 6.3 Medium2024-10-31
CVE-2024-10600 Tongda OA 2017 submenu.php sql injection — OA 2017 7.3 High2024-10-31
CVE-2024-6479 SIP Reviews Shortcode for WooCommerce <= 1.2.3 - Authenticated (Contributor+) SQL Injection — SIP Reviews Shortcode for WooCommerce 6.5 Medium2024-10-31
CVE-2024-6480 SIP Reviews Shortcode for WooCommerce <= 1.2.3 - Authenticated (Contributor+) Cross-Site Scripting — SIP Reviews Shortcode for WooCommerce 6.4 Medium2024-10-31
CVE-2024-10597 ESAFENET CDG PolicyActionService.java delPolicyAction sql injection — CDG 6.3 Medium2024-10-31
CVE-2024-10596 ESAFENET CDG EncryptPolicyTypeService.java delEntryptPolicySort sql injection — CDG 6.3 Medium2024-10-31
CVE-2024-10595 ESAFENET CDG PublicDocInfoAjax.java delDifferCourseList sql injection — CDG 6.3 Medium2024-10-31
CVE-2024-10594 ESAFENET CDG FileDirectoryService.java docHistory sql injection — CDG 6.3 Medium2024-10-31
CVE-2024-51482 Boolean-based SQL Injection in ZoneMinder v1.37.* <= 1.37.64 — zoneminder 10.0 Critical2024-10-31
CVE-2024-10561 Codezips Pet Shop Management System birdsupdate.php sql injection — Pet Shop Management System 7.3 High2024-10-31
CVE-2024-10556 Codezips Pet Shop Management System birdsadd.php sql injection — Pet Shop Management System 7.3 High2024-10-31
CVE-2024-10546 open-scratch Teaching 在线教学平台 URL getDictItemsByTable sql injection — Teaching 在线教学平台 6.3 Medium2024-10-30
CVE-2024-10509 Codezips Online Institute Management System login.php sql injection — Online Institute Management System 7.3 High2024-10-30
CVE-2024-10507 Codezips Free Exam Hall Seating Management System login.php sql injection — Free Exam Hall Seating Management System 7.3 High2024-10-30

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8874 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.