Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8880

8880 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-38872 SQL Injection — Exchange Reporter Plus 8.3 High2024-07-26
CVE-2024-38871 SQL Injection — Exchange Reporter Plus 8.3 High2024-07-26
CVE-2024-40689 IBM InfoSphere Information Server SQL injection — InfoSphere Information Server 6.0 Medium2024-07-26
CVE-2024-7119 MD-MAFUJUL-HASAN Online-Payroll-Management-System employee_viewmore.php sql injection — Online-Payroll-Management-System 6.3 Medium2024-07-26
CVE-2024-7118 MD-MAFUJUL-HASAN Online-Payroll-Management-System department_viewmore.php sql injection — Online-Payroll-Management-System 6.3 Medium2024-07-26
CVE-2024-7117 MD-MAFUJUL-HASAN Online-Payroll-Management-System shift_viewmore.php sql injection — Online-Payroll-Management-System 6.3 Medium2024-07-26
CVE-2024-7116 MD-MAFUJUL-HASAN Online-Payroll-Management-System branch_viewmore.php sql injection — Online-Payroll-Management-System 6.3 Medium2024-07-26
CVE-2024-7115 MD-MAFUJUL-HASAN Online-Payroll-Management-System designation_viewmore.php sql injection — Online-Payroll-Management-System 6.3 Medium2024-07-26
CVE-2024-7114 Tianchoy Blog so.php sql injection — Blog 6.3 Medium2024-07-26
CVE-2024-7105 ForIP Tecnologia Administração PABX Lista Ura Page detalheIdUra sql injection — Administração PABX 6.3 Medium2024-07-25
CVE-2024-7101 ForIP Tecnologia Administração PABX Authentication Form login sql injection — Administração PABX 7.3 High2024-07-25
CVE-2024-7081 itsourcecode Tailoring Management System expcatadd.php sql injection — Tailoring Management System 6.3 Medium2024-07-24
CVE-2024-7069 SourceCodester Employee and Visitor Gate Pass Logging System sql injection — Employee and Visitor Gate Pass Logging System 6.3 Medium2024-07-24
CVE-2024-38692 WordPress spiffy-calendar plugin <= 4.9.11 - SQL Injection vulnerability — Spiffy Calendar 7.6 High2024-07-22
CVE-2024-38708 WordPress Barcode Scanner and Inventory manager plugin <= 1.6.1 - SQL Injection vulnerability — Barcode Scanner with Inventory & Order Manager 8.5 High2024-07-22
CVE-2024-38755 WordPress DirectoryPress plugin <= 3.6.10 - SQL Injection vulnerability — DirectoryPress 8.5 High2024-07-22
CVE-2024-38773 WordPress formlift plugin <= 7.5.17 - Unauthenticated Blind SQL Injection vulnerability — FormLift for Infusionsoft Web Forms 9.3 Critical2024-07-22
CVE-2024-38788 WordPress UiPress lite plugin <= 3.4.06 - SQL Injection vulnerability — UiPress lite 7.6 High2024-07-22
CVE-2024-6970 itsourcecode Tailoring Management System staffcatadd.php sql injection — Tailoring Management System 6.3 Medium2024-07-22
CVE-2024-6969 SourceCodester Clinics Patient Management System get_patient_history.php sql injection — Clinics Patient Management System 6.3 Medium2024-07-22
CVE-2024-6968 SourceCodester Clinics Patient Management System print_patients_visits.php sql injection — Clinics Patient Management System 6.3 Medium2024-07-22
CVE-2024-6967 SourceCodester Employee and Visitor Gate Pass Logging System sql injection — Employee and Visitor Gate Pass Logging System 6.3 Medium2024-07-22
CVE-2024-6966 itsourcecode Online Blood Bank Management System Login login.php sql injection — Online Blood Bank Management System 7.3 High2024-07-22
CVE-2024-6957 itsourcecode University Management System Login functions.php sql injection — University Management System 7.3 High2024-07-21
CVE-2024-6956 itsourcecode University Management System view_cgpa.php sql injection — University Management System 6.3 Medium2024-07-21
CVE-2024-6953 itsourcecode Tailoring Management System sms.php sql injection — Tailoring Management System 6.3 Medium2024-07-21
CVE-2024-6952 itsourcecode University Management System sql injection — University Management System 6.3 Medium2024-07-21
CVE-2024-6951 SourceCodester Simple Online Book Store System admin_delete.php sql injection — Simple Online Book Store System 6.3 Medium2024-07-21
CVE-2024-6933 LimeSurvey Survey General Settings updatesurveylocalesettings_generalsettings actionUpdateSurveyLocaleSettingsGeneralSettings sql injection — LimeSurvey 6.3 Medium2024-07-21
CVE-2024-6497 SEO Plugin by Squirrly SEO <= 12.3.19 - Authenticated (Contributor+) SQL Injection via url Parameter — SEO Plugin by Squirrly SEO 8.8 High2024-07-20

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8880 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.