Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-0267 Kashipara Hospital Management System Parameter login.php sql injection — Hospital Management System 7.3 High2024-01-07
CVE-2024-0247 CodeAstro Online Food Ordering System Admin Panel sql injection — Online Food Ordering System 7.3 High2024-01-05
CVE-2023-41287 Video Station — Video Station 4.3 Medium2024-01-05
CVE-2023-47219 QuMagie — QuMagie 3.5 Low2024-01-05
CVE-2023-50867 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50866 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50865 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50864 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50863 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50862 Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Travel Website 9.8 Critical2024-01-04
CVE-2023-50753 Online Notice Board System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Notice Board System 9.8 Critical2024-01-04
CVE-2023-50752 Online Notice Board System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Notice Board System 9.8 Critical2024-01-04
CVE-2023-50743 Online Notice Board System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Notice Board System 9.8 Critical2024-01-04
CVE-2023-49666 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49665 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49658 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49639 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49633 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49625 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49624 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-49622 Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Billing Software 9.8 Critical2024-01-04
CVE-2023-6981 WP SMS <= 6.5 - Authenticated (Admin+) SQL Injection to Reflected Cross-Site Scripting — WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA for WooCommerce 6.1 Medium2024-01-03
CVE-2023-6436 SQLi in Ekol Bilisim Website Template — Website Template 9.8 Critical2024-01-02
CVE-2024-0182 SourceCodester Engineers Online Portal Admin Login sql injection — Engineers Online Portal 7.3 High2024-01-01
CVE-2023-51423 WordPress WebinarIgnition Plugin <= 3.05.0 is vulnerable to SQL Injection — Webinar Plugin: Create live/evergreen/automated/instant webinars, stream & Zoom Meetings | WebinarIgnition 9.3 Critical2023-12-31
CVE-2023-51469 WordPress Checkout Mestres WP Plugin <= 7.1.9.6 is vulnerable to SQL Injection — Checkout Mestres WP 9.3 Critical2023-12-31
CVE-2023-52131 WordPress Page Generator Plugin <= 1.7.1 is vulnerable to SQL Injection — Page Generator 7.6 High2023-12-31
CVE-2023-51547 WordPress Fluent Support Plugin <= 1.7.6 is vulnerable to SQL Injection — Fluent Support – WordPress Helpdesk and Customer Support Ticket Plugin 7.6 High2023-12-31
CVE-2023-52132 WordPress WP Adminify Plugin <= 3.1.6 is vulnerable to SQL Injection — WP Adminify 7.6 High2023-12-31
CVE-2023-52133 WordPress Most And Least Read Posts Widget Plugin <= 2.5.16 is vulnerable to SQL Injection — Most And Least Read Posts Widget 8.5 High2023-12-31

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.