Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8864

8864 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-2660 SourceCodester Online Computer and Laptop Store view_categories.php sql injection — Online Computer and Laptop Store 6.3 Medium2023-05-11
CVE-2023-2659 SourceCodester Online Computer and Laptop Store view_product.php sql injection — Online Computer and Laptop Store 6.3 Medium2023-05-11
CVE-2023-2658 SourceCodester Online Computer and Laptop Store products.php sql injection — Online Computer and Laptop Store 6.3 Medium2023-05-11
CVE-2023-2656 SourceCodester AC Repair and Services System sql injection — AC Repair and Services System 6.3 Medium2023-05-11
CVE-2023-2653 SourceCodester Lost and Found Information System index.php sql injection — Lost and Found Information System 6.3 Medium2023-05-11
CVE-2023-2652 SourceCodester Lost and Found Information System sql injection — Lost and Found Information System 6.3 Medium2023-05-11
CVE-2023-2643 SourceCodester File Tracker Manager System POST Parameter update_password.php sql injection — File Tracker Manager System 6.3 Medium2023-05-11
CVE-2023-2642 SourceCodester Online Exam System GET Parameter updateCourse.php sql injection — Online Exam System 6.3 Medium2023-05-11
CVE-2023-2641 SourceCodester Online Internship Management System POST Parameter login.php sql injection — Online Internship Management System 7.3 High2023-05-11
CVE-2023-28359 Rocket.Chat SQL注入漏洞 — Rocket.Chat 9.4 -2023-05-11
CVE-2023-2619 SourceCodester Online Tours & Travels Management System disapprove_delete.php exec sql injection — Online Tours & Travels Management System 6.3 Medium2023-05-10
CVE-2023-2596 SourceCodester Online Reviewer System GET Parameter user-update.php sql injection — Online Reviewer System 6.3 Medium2023-05-09
CVE-2023-2595 SourceCodester Billing Management System POST Parameter ajax_service.php sql injection — Billing Management System 6.3 Medium2023-05-09
CVE-2023-2594 SourceCodester Food Ordering Management System Registration sql injection — Food Ordering Management System 7.3 High2023-05-09
CVE-2023-31038 Apache Log4cxx: SQL injection when using ODBC appender — Apache Log4cxx 7.2 -2023-05-08
CVE-2016-15031 PHP-Login POST Parameter class.loginscript.php checkLogin sql injection — PHP-Login 7.3 High2023-05-06
CVE-2023-2519 Caton CTP Relay Server API login sql injection — CTP Relay Server 7.3 High2023-05-04
CVE-2022-4259 Authenticated SQL Injection on Alerts in Guardian/CMC before 22.5.2 — CMC 8.8 High2023-05-04
CVE-2023-30944 Moodle: minor sql injection risk in external wiki method for listing pages 5.6 Medium2023-05-02
CVE-2023-2451 SourceCodester Online DJ Management System GET Parameter view_details.php sql injection — Online DJ Management System 6.3 Medium2023-05-01
CVE-2023-2420 MLECMS common.func.php get_url sql injection — MLECMS 6.3 Medium2023-04-29
CVE-2023-2413 SourceCodester AC Repair and Services System manage_booking.php sql injection — AC Repair and Services System 6.3 Medium2023-04-29
CVE-2023-2412 SourceCodester AC Repair and Services System manage_user.php sql injection — AC Repair and Services System 6.3 Medium2023-04-28
CVE-2023-2411 SourceCodester AC Repair and Services System view_inquiry.php sql injection — AC Repair and Services System 6.3 Medium2023-04-28
CVE-2023-2410 SourceCodester AC Repair and Services System view_booking.php sql injection — AC Repair and Services System 6.3 Medium2023-04-28
CVE-2023-2409 SourceCodester AC Repair and Services System view_service.php sql injection — AC Repair and Services System 6.3 Medium2023-04-28
CVE-2023-2408 SourceCodester AC Repair and Services System view.php sql injection — AC Repair and Services System 6.3 Medium2023-04-28
CVE-2023-2371 SourceCodester Online DJ Management System GET Parameter view_details.php sql injection — Online DJ Management System 6.3 Medium2023-04-28
CVE-2023-2370 SourceCodester Online DJ Management System GET Parameter manage_event.php sql injection — Online DJ Management System 6.3 Medium2023-04-28
CVE-2023-2369 SourceCodester Faculty Evaluation System manage_restriction.php sql injection — Faculty Evaluation System 4.7 Medium2023-04-28

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8864 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.