Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8876

8876 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-47331 WordPress Multi Step for Contact Form plugin <= 2.7.7 - Unauthenticated SQL Injection vulnerability — Multi Step for Contact Form 9.3 Critical2024-10-11
CVE-2024-48020 WordPress Backup and Staging by WP Time Capsule plugin <= 1.22.21 - SQL Injection vulnerability — Backup and Staging by WP Time Capsule 8.5 High2024-10-11
CVE-2024-9818 SourceCodester Online Veterinary Appointment System manage_category.php sql injection — Online Veterinary Appointment System 7.3 High2024-10-10
CVE-2024-9817 code-projects Blood Bank System update.php sql injection — Blood Bank System 6.3 Medium2024-10-10
CVE-2024-9814 Codezips Pharmacy Management System update.php sql injection — Pharmacy Management System 7.3 High2024-10-10
CVE-2024-9813 Codezips Pharmacy Management System register.php sql injection — Pharmacy Management System 7.3 High2024-10-10
CVE-2024-9812 code-projects Crud Operation System delete.php sql injection — Crud Operation System 7.3 High2024-10-10
CVE-2024-9811 code-projects Restaurant Reservation System filter3.php sql injection — Restaurant Reservation System 7.3 High2024-10-10
CVE-2024-9809 SourceCodester Online Eyewear Shop Master.php delete_product sql injection — Online Eyewear Shop 6.3 Medium2024-10-10
CVE-2024-9808 SourceCodester Online Eyewear Shop sql injection — Online Eyewear Shop 6.3 Medium2024-10-10
CVE-2024-9804 code-projects Blood Bank System campsdetails.php sql injection — Blood Bank System 4.7 Medium2024-10-10
CVE-2024-9797 code-projects Blood Bank System register.php sql injection — Blood Bank System 7.3 High2024-10-10
CVE-2024-9790 LyLme_spage sou.php sql injection — LyLme_spage 4.7 Medium2024-10-10
CVE-2024-9789 LyLme_spage apply.php sql injection — LyLme_spage 4.7 Medium2024-10-10
CVE-2024-9788 LyLme_spage tag.php sql injection — LyLme_spage 4.7 Medium2024-10-10
CVE-2024-4658 SQLi in TE Informatics' Nova CMS — Nova CMS 9.8AICriticalAI2024-10-10
CVE-2024-9201 SQL injection vulnerability in SEUR plugin — SEUR plugin 9.4 Critical2024-10-10
CVE-2024-9022 TS Poll – Survey, Versus Poll, Image Poll, Video Poll <= 2.4.0 - Authenticated (Administrator+) SQL Injection via orderby Parameter — TS Poll – Survey, Versus Poll, Image Poll, Video Poll 7.2 High2024-10-10
CVE-2024-9465 Expedition: SQL Injection Leads to Firewall Admin Credential Disclosure — Expedition 9.1AICriticalAI2024-10-09
CVE-2024-9286 SQLi in TRtek Software's Distant Education Platform — Distant Education Platform 9.8AICriticalAI2024-10-09
CVE-2024-47334 WordPress Zoho Flow for WordPress plugin <= 2.7.1 - SQL Injection vulnerability — Zoho Flow 7.6 High2024-10-09
CVE-2024-43468 Microsoft Configuration Manager Remote Code Execution Vulnerability — Microsoft Configuration Manager 9.8 Critical2024-10-08
CVE-2024-9379 Ivanti CSA 安全漏洞 — CSA (Cloud Services Appliance) 6.5 Medium2024-10-08
CVE-2024-8911 LatePoint <= 5.0.11 - Unauthenticated Arbitrary User Password Change via SQL Injection — LatePoint Plugin 9.8 Critical2024-10-08
CVE-2024-9574 SQL Injection vulnerability in SOPlanning — SOPlanning 9.8 Critical2024-10-07
CVE-2024-9573 SQL Injection vulnerability in SOPlanning — SOPlanning 6.3 Medium2024-10-07
CVE-2024-47335 WordPress Bit Form plugin <= 2.13.11 - SQL Injection vulnerability — Bit Form 7.6 High2024-10-07
CVE-2024-9560 ESAFENET CDG Catelogs;logindojojs delCatelogs sql injection — CDG 6.3 Medium2024-10-06
CVE-2024-47338 WordPress WPExperts Square For GiveWP plugin <= 1.3 - SQL Injection vulnerability — WPExperts Square For GiveWP 8.5 High2024-10-06
CVE-2024-47350 WordPress YITH WooCommerce Ajax Search plugin <= 2.8.0 - SQL Injection vulnerability — YITH WooCommerce Ajax Search 9.3 Critical2024-10-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8876 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.