Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8880

8880 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-6906 SourceCodester Record Management System add_leave_non_user.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6905 SourceCodester Record Management System view_info_user.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6904 SourceCodester Record Management System sort2_user.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6903 SourceCodester Record Management System sort1_user.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6338 FV Player <= 7.5.46.7212 - Authenticated (Subscriber+) SQL Injection via exclude Parameter — FV Flowplayer Video Player 8.8 High2024-07-19
CVE-2024-6902 SourceCodester Record Management System sort_user.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6901 SourceCodester Record Management System entry.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6900 SourceCodester Record Management System edit_emp.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6899 SourceCodester Record Management System view_info.php sql injection — Record Management System 6.3 Medium2024-07-19
CVE-2024-6898 SourceCodester Record Management System index.php sql injection — Record Management System 7.3 High2024-07-19
CVE-2024-0857 SQLi in Universal Software's FlexWater Corporate Water Management — FlexWater Corporate Water Management 9.8 Critical2024-07-18
CVE-2024-39911 1Panel SQL injection — 1Panel 10.0 Critical2024-07-18
CVE-2024-39907 a sqlinjection in 1Panel — 1Panel 9.8 Critical2024-07-18
CVE-2024-6830 SourceCodester Simple Inventory Management System Order action.php sql injection — Simple Inventory Management System 6.3 Medium2024-07-17
CVE-2024-6808 itsourcecode Simple Task List signUp.php insertUserRecord sql injection — Simple Task List 7.3 High2024-07-17
CVE-2024-6803 itsourcecode Document Management System insert.php sql injection — Document Management System 5.5 Medium2024-07-17
CVE-2024-6802 SourceCodester Computer Laboratory Management System Master.php sql injection — Computer Laboratory Management System 6.3 Medium2024-07-17
CVE-2024-6457 HUSKY - Products Filter Professional for WooCommerce <= 1.3.6 - Unauthenticated Time-Based SQL Injection — HUSKY – Products Filter Professional for WooCommerce 9.8 Critical2024-07-16
CVE-2024-39887 Apache Superset: Improper SQL authorisation, parse not checking for specific engine functions — Apache Superset 4.3 Medium2024-07-16
CVE-2023-52290 Apache StreamPark (incubating): Unchecked SQL query fields trigger SQL injection vulnerability — Apache StreamPark (incubating) 6.5AIMediumAI2024-07-16
CVE-2024-6745 code-projects Simple Ticket Booking Login adminauthenticate.php sql injection — Simple Ticket Booking 7.3 High2024-07-15
CVE-2024-6743 AguardNet Space Management System - SQL injection — Space Management System 9.8 Critical2024-07-15
CVE-2024-6736 SourceCodester Employee and Visitor Gate Pass Logging System view_employee.php sql injection — Employee and Visitor Gate Pass Logging System 6.3 Medium2024-07-15
CVE-2024-6735 itsourcecode Tailoring Management System setgeneral.php sql injection — Tailoring Management System 6.3 Medium2024-07-15
CVE-2024-6734 itsourcecode Tailoring Management System templateadd.php sql injection — Tailoring Management System 6.3 Medium2024-07-14
CVE-2024-6733 itsourcecode Tailoring Management System templateedit.php sql injection — Tailoring Management System 6.3 Medium2024-07-14
CVE-2024-6732 SourceCodester Student Study Center Desk Management System Users.php sql injection — Student Study Center Desk Management System 6.3 Medium2024-07-14
CVE-2024-6731 SourceCodester Student Study Center Desk Management System Master.php sql injection — Student Study Center Desk Management System 6.3 Medium2024-07-14
CVE-2024-6729 SourceCodester Kortex Lite Advocate Office Management System add_act.php sql injection — Kortex Lite Advocate Office Management System 6.3 Medium2024-07-14
CVE-2024-6728 itsourcecode Tailoring Management System typeedit.php sql injection — Tailoring Management System 6.3 Medium2024-07-14

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8880 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.