Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8873

8873 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-5412 Image horizontal reel scroll slideshow <= 13.2 - Authenticated (Subscriber+) SQL Injection via Shortcode — Image horizontal reel scroll slideshow 8.8 High2023-10-31
CVE-2023-5464 Jquery accordion slideshow <= 8.1 - Authenticated (Subscriber+) SQL Injection via Shortcode — Jquery accordion slideshow 8.8 High2023-10-31
CVE-2023-5428 Image vertical reel scroll slideshow <= 9.0 - Authenticated (Subscriber+) SQL Injection via Shortcode — Image vertical reel scroll slideshow 8.8 High2023-10-31
CVE-2023-41891 FlyteAdmin SQL Injection in List Filters — flyteadmin 3.5 Low2023-10-30
CVE-2023-5315 Google Maps made Simple <= 0.6 - Authenticated (Subscriber+) SQL Injection via Shortcode — Google Maps made Simple 8.8 High2023-10-30
CVE-2007-10003 The Hackers Diet Plugin HTTP POST Request ajax_blurb.php sql injection — The Hackers Diet Plugin 6.3 Medium2023-10-29
CVE-2023-5836 SourceCodester Task Reminder System sql injection — Task Reminder System 6.3 Medium2023-10-28
CVE-2023-44480 Leave Management System Project v1.0 - Multiple Authenticated SQL Injections (SQLi) — Leave Management System Project 8.8 High2023-10-27
CVE-2023-5828 Nanning Ontall Longxing Industrial Development Zone Project Construction and Installation Management System login.aspx sql injection — Longxing Industrial Development Zone Project Construction and Installation Management System 7.3 High2023-10-27
CVE-2023-5827 Shanghai CTI Navigation CTI Monitoring and Early Warning System UserEdit.aspx sql injection — CTI Monitoring and Early Warning System 5.5 Medium2023-10-27
CVE-2023-5826 Netentsec NS-ASG Application Security Gateway list_onlineuser.php sql injection — NS-ASG Application Security Gateway 5.5 Medium2023-10-27
CVE-2023-5807 SQLi in TRtek Software's Education Portal — Education Portal 9.8 Critical2023-10-27
CVE-2023-5814 SourceCodester Task Reminder System sql injection — Task Reminder System 6.3 Medium2023-10-27
CVE-2023-5813 SourceCodester Task Reminder System sql injection — Task Reminder System 6.3 Medium2023-10-27
CVE-2023-5805 SourceCodester Simple Real Estate Portal System view_estate.php sql injection — Simple Real Estate Portal System 6.3 Medium2023-10-26
CVE-2023-46748 BIG-IP Configuration utility authenticated SQL injection vulnerability — BIG-IP 8.8 High2023-10-26
CVE-2023-5804 PHPGurukul Nipah Virus Testing Management System login.php sql injection — Nipah Virus Testing Management System 7.3 High2023-10-26
CVE-2023-44267 Online Art Gallery v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Art Gallery 9.8 Critical2023-10-26
CVE-2023-5794 PHPGurukul Online Railway Catering System Login index.php sql injection — Online Railway Catering System 7.3 High2023-10-26
CVE-2023-5792 SourceCodester Sticky Notes App delete-note.php sql injection — Sticky Notes App 6.3 Medium2023-10-26
CVE-2023-5787 Shaanxi Chanming Education Technology Score Query System sql injection — Score Query System 7.3 High2023-10-26
CVE-2023-5785 Netentsec NS-ASG Application Security Gateway addaddress_interpret.php sql injection — NS-ASG Application Security Gateway 5.5 Medium2023-10-26
CVE-2023-5784 Netentsec NS-ASG Application Security Gateway uploadfirewall.php sql injection — NS-ASG Application Security Gateway 5.5 Medium2023-10-26
CVE-2023-5783 Tongda OA 2017 delete.php sql injection — OA 2017 6.3 Medium2023-10-26
CVE-2023-5782 Tongda OA 2017 General News delete_query.php sql injection — OA 2017 5.5 Medium2023-10-26
CVE-2023-5781 Tongda OA 2017 delete_webmail.php DELETE_STR sql injection — OA 2017 6.3 Medium2023-10-26
CVE-2023-5780 Tongda OA 2017 delete.php sql injection — OA 2017 7.3 High2023-10-26
CVE-2023-27262 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWeb 9.8 Critical2023-10-25
CVE-2023-27260 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWeb 9.8 Critical2023-10-25
CVE-2023-27255 Unauthenticated SQL Injection In IDAttend’s IDWeb Application — IDWeb 9.8 Critical2023-10-25

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8873 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.