Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8875

8875 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-2534 MAGESH-K21 Online-College-Event-Hall-Reservation-System users.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2532 MAGESH-K21 Online-College-Event-Hall-Reservation-System update-users.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2528 MAGESH-K21 Online-College-Event-Hall-Reservation-System update-rooms.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2527 MAGESH-K21 Online-College-Event-Hall-Reservation-System rooms.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2524 MAGESH-K21 Online-College-Event-Hall-Reservation-System receipt.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2522 MAGESH-K21 Online-College-Event-Hall-Reservation-System booktime.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2520 MAGESH-K21 Online-College-Event-Hall-Reservation-System bookdate.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2517 MAGESH-K21 Online-College-Event-Hall-Reservation-System book_history.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2516 MAGESH-K21 Online-College-Event-Hall-Reservation-System home.php sql injection — Online-College-Event-Hall-Reservation-System 6.3 Medium2024-03-16
CVE-2024-2514 MAGESH-K21 Online-College-Event-Hall-Reservation-System login.php sql injection — Online-College-Event-Hall-Reservation-System 7.3 High2024-03-15
CVE-2024-1795 HUSKY – Products Filter for WooCommerce Professional <= 1.3.5.2 - Authenticated (Contributor+) SQL Injection — HUSKY – Products Filter Professional for WooCommerce 8.8 High2024-03-15
CVE-2024-2480 MHA Sistemas arMHAzena Executa Page sql injection — arMHAzena 6.3 Medium2024-03-15
CVE-2024-2478 BradWenqiang HR Background Management register selectAll sql injection — HR 6.3 Medium2024-03-15
CVE-2024-2418 SourceCodester Best POS Management System view_order.php sql injection — Best POS Management System 6.3 Medium2024-03-13
CVE-2024-1751 Tutor LMS – eLearning and online course solution <= 2.6.1 - Authenticated (Subscriber+) SQL Injection — Tutor LMS – eLearning and online course solution 8.8 High2024-03-13
CVE-2024-1793 AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth By AWeber <= 7.3.14 - Authenticated (Admin+) SQL Injection — AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth 7.2 High2024-03-13
CVE-2023-5663 News Announcement Scroll <= 9.0.0 - Authenticated (Contributor+) SQL Injection via Shortcode — News Announcement Scroll 8.8 High2024-03-13
CVE-2024-1203 Conversios – Google Analytics 4 (GA4), Meta Pixel & more Via Google Tag Manager For WooCommerce <= 7.0.7 - Authenticated (Subscriber+) SQL Injection — Conversios: Google Analytics (GA4), Google Ads, Conversion and Analytics Tracking for Multi-Channels 8.8 High2024-03-13
CVE-2024-1301 Multiple Vulnerabilities in Badger Meter's Monitool — Monitool 9.8 Critical2024-03-12
CVE-2023-48788 Fortinet FortiClientEMS SQL注入漏洞 — FortiClientEMS 9.3 Critical2024-03-12
CVE-2024-2393 SourceCodester CRUD without Page Reload add_user.php sql injection — CRUD without Page Reload 6.3 Medium2024-03-12
CVE-2024-2351 CodeAstro Ecommerce Site Search action.php sql injection — Ecommerce Site 6.3 Medium2024-03-09
CVE-2024-2333 CodeAstro Membership Management System add_members.php sql injection — Membership Management System 6.3 Medium2024-03-09
CVE-2024-2332 SourceCodester Online Mobile Management Store HTTP GET Request manage_category.php sql injection — Online Mobile Management Store 6.3 Medium2024-03-09
CVE-2024-2330 Netentsec NS-ASG Application Security Gateway index.php sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-09
CVE-2024-2329 Netentsec NS-ASG Application Security Gateway sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-09
CVE-2024-2338 SQL Injection in PostgreSQL Anonymizer 1.2 allows table owner to gain superuser privileges via masking rule — PostgreSQL Anonymizer 8.0 High2024-03-08
CVE-2024-21901 myQNAPcloud — myQNAPcloud 4.7 Medium2024-03-08
CVE-2024-2283 boyiddha Automated-Mess-Management-System view.php sql injection — Automated-Mess-Management-System 6.3 Medium2024-03-08
CVE-2024-2282 boyiddha Automated-Mess-Management-System Login Page index.php sql injection — Automated-Mess-Management-System 7.3 High2024-03-08

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8875 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.