Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8881

8881 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-4909 Campcodes Complete Web-Based School Management System student_due_payment.php sql injection — Complete Web-Based School Management System 6.3 Medium2024-05-15
CVE-2024-4908 Campcodes Complete Web-Based School Management System student_attendance_history1.php sql injection — Complete Web-Based School Management System 6.3 Medium2024-05-15
CVE-2024-4907 Campcodes Complete Web-Based School Management System show_student2.php sql injection — Complete Web-Based School Management System 6.3 Medium2024-05-15
CVE-2024-4906 Campcodes Complete Web-Based School Management System show_student1.php sql injection — Complete Web-Based School Management System 6.3 Medium2024-05-15
CVE-2024-4905 Kashipara College Management System view_students_each_detail.php sql injection — College Management System 6.3 Medium2024-05-15
CVE-2024-4903 Tongda OA delete.php sql injection — OA 6.3 Medium2024-05-15
CVE-2024-4893 DigiWin EasyFlow .NET - SQL Injection — EasyFlow .NET 9.8 Critical2024-05-15
CVE-2024-32888 Amazon JDBC Driver for Redshift SQL Injection via line comment generation — amazon-redshift-jdbc-driver 10.0 Critical2024-05-15
CVE-2024-4847 Alt Text AI – Automatically generate image alt text for SEO and accessibility <= 1.4.9 - Authenticated (Subscriber+) SQL Injection — Alt Text AI – Automatically generate image alt text for SEO and accessibility 8.8 High2024-05-15
CVE-2024-27941 Siemens RUGGEDCOM CROSSBOW SQL注入漏洞 — RUGGEDCOM CROSSBOW 8.8 High2024-05-14
CVE-2024-27940 Siemens RUGGEDCOM CROSSBOW SQL注入漏洞 — RUGGEDCOM CROSSBOW 8.8 High2024-05-14
CVE-2024-33009 SQL injection vulnerability in SAP Global Label Management (GLM) — SAP Global Label Management (GLM) 4.2 Medium2024-05-14
CVE-2023-50718 NocoDB SQL Injection vulnerability — nocodb 6.5 Medium2024-05-13
CVE-2024-31460 Cacti SQL Injection vulnerability in lib/api_automation.php caused by reading dirty data stored in database — cacti 6.5 Medium2024-05-13
CVE-2024-31458 Cacti SQL Injection vulnerability in lib/html_form_templates.php by reading dirty data stored in database — cacti 4.6 Medium2024-05-13
CVE-2024-31445 SQL Injection vulnerability in automation_get_new_graphs_sql — cacti 8.8 High2024-05-13
CVE-2024-4824 SQL Injection in School ERP Pro+Responsive by AROX SOLUTION — School ERP Pro+Responsive 9.8 Critical2024-05-13
CVE-2024-4808 Kashipara College Management System delete_faculty.php sql injection — College Management System 6.3 Medium2024-05-13
CVE-2024-4807 Kashipara College Management System delete_user.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4806 Kashipara College Management System each_extracurricula_activities.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4805 Kashipara College Management System edit_faculty.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4804 Kashipara College Management System edit_user.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4803 Kashipara College Management System submit_admin.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4802 Kashipara College Management System submit_extracurricular_activity.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4801 Kashipara College Management System submit_new_faculty.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4800 Kashipara College Management System submit_student.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4799 Kashipara College Management System view_each_faculty.php sql injection — College Management System 6.3 Medium2024-05-12
CVE-2024-4798 SourceCodester Online Computer and Laptop Store manage_brand.php sql injection — Online Computer and Laptop Store 6.3 Medium2024-05-12
CVE-2024-4796 Campcodes Online Laundry Management System manage_inv.php sql injection — Online Laundry Management System 6.3 Medium2024-05-12
CVE-2024-4795 Campcodes Online Laundry Management System manage_user.php sql injection — Online Laundry Management System 6.3 Medium2024-05-12

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8881 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.