Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8875

8875 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-2670 Campcodes Online Job Finder System index.php sql injection — Online Job Finder System 6.3 Medium2024-03-20
CVE-2024-1799 GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress <= 6.8.6 - Authenticated (Contributor+) SQL Injection via Shortcode — GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress 8.8 High2024-03-20
CVE-2024-2669 Campcodes Online Job Finder System GET Parameter controller.php sql injection — Online Job Finder System 6.3 Medium2024-03-20
CVE-2024-2668 Campcodes Online Job Finder System controller.php sql injection — Online Job Finder System 6.3 Medium2024-03-20
CVE-2024-2387 Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms <= 1.82.0 - SQL Injection to Reflected Cross-Site Scripting via integration_id — AFI – The Easiest Integration Plugin 6.1 Medium2024-03-20
CVE-2024-2649 Netentsec NS-ASG Application Security Gateway deleteonlineuser.php sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-19
CVE-2024-2647 Netentsec NS-ASG Application Security Gateway singlelogin.php sql injection — NS-ASG Application Security Gateway 7.3 High2024-03-19
CVE-2024-2646 Netentsec NS-ASG Application Security Gateway sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-19
CVE-2024-2644 Netentsec NS-ASG Application Security Gateway addfirewall.php sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-19
CVE-2023-44091 Unauth Time-Based SQL Injection — Pandora FMS 7.5 High2024-03-19
CVE-2023-44090 UnautH SQL Injection — Pandora FMS 6.8 Medium2024-03-19
CVE-2024-2622 Fujian Kelixin Communication Command and Dispatch Platform editemedia.php sql injection — Command and Dispatch Platform 6.3 Medium2024-03-19
CVE-2024-2621 Fujian Kelixin Communication Command and Dispatch Platform pwd_update.php sql injection — Command and Dispatch Platform 6.3 Medium2024-03-19
CVE-2024-2620 Fujian Kelixin Communication Command and Dispatch Platform down_file.php sql injection — Command and Dispatch Platform 6.3 Medium2024-03-19
CVE-2024-27096 SQL Injection in through the search engine — glpi 7.7 High2024-03-18
CVE-2024-2592 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2591 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2590 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2589 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2588 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2587 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2586 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2585 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2584 SQL injection vulnerability in AMSS++ — AMSS++ 8.2 High2024-03-18
CVE-2024-2568 heyewei JFinalCMS Custom Data Page sql injection — JFinalCMS 4.7 Medium2024-03-17
CVE-2024-2566 Fujian Kelixin Communication Command and Dispatch Platform get_extension_yl.php sql injection — Command and Dispatch Platform 7.3 High2024-03-17
CVE-2024-2562 PandaXGO PandaX role_menu.go InsertRole sql injection — PandaX 6.3 Medium2024-03-17
CVE-2024-2556 SourceCodester Employee Task Management System attendance-info.php sql injection — Employee Task Management System 6.3 Medium2024-03-17
CVE-2024-2555 SourceCodester Employee Task Management System update-admin.php sql injection — Employee Task Management System 6.3 Medium2024-03-17
CVE-2024-2554 SourceCodester Employee Task Management System update-employee.php sql injection — Employee Task Management System 6.3 Medium2024-03-17

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8875 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.