Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8864

8864 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-2368 SourceCodester Faculty Evaluation System sql injection — Faculty Evaluation System 4.7 Medium2023-04-28
CVE-2023-2367 SourceCodester Faculty Evaluation System manage_academic.php sql injection — Faculty Evaluation System 4.7 Medium2023-04-28
CVE-2023-2366 SourceCodester Faculty Evaluation System sql injection — Faculty Evaluation System 6.3 Medium2023-04-28
CVE-2023-2365 SourceCodester Faculty Evaluation System sql injection — Faculty Evaluation System 6.3 Medium2023-04-28
CVE-2023-2363 SourceCodester Resort Reservation System view_room.php sql injection — Resort Reservation System 6.3 Medium2023-04-28
CVE-2023-30850 Pimcore SQL Injection Vulnerability in Admin Translations API — pimcore 8.8 High2023-04-27
CVE-2023-30849 Pimcore vulnerable to SQL Injection in Translation Export API — pimcore 8.8 High2023-04-27
CVE-2023-30848 Pimcore SQL Injection Vulnerability in Admin Search Find API — pimcore 8.8 High2023-04-27
CVE-2023-2348 SourceCodester Service Provider Management System manage_user.php sql injection — Service Provider Management System 6.3 Medium2023-04-27
CVE-2023-2347 SourceCodester Service Provider Management System manage_service.php sql injection — Service Provider Management System 6.3 Medium2023-04-27
CVE-2023-2346 SourceCodester Service Provider Management System view_inquiry.php sql injection — Service Provider Management System 6.3 Medium2023-04-27
CVE-2023-2344 SourceCodester Service Provider Management System HTTP POST Request sql injection — Service Provider Management System 6.3 Medium2023-04-27
CVE-2023-2338 SQL Injection in pimcore/pimcore — pimcore/pimcore 8.8 -2023-04-27
CVE-2023-30839 PrestaShop vulnerable to SQL filter bypass leading to arbitrary write requests using "SQL Manager" — PrestaShop 10.0 Critical2023-04-25
CVE-2023-30545 PrestaShop arbitrary file read vulnerability — PrestaShop 7.7 High2023-04-25
CVE-2023-2244 SourceCodester Online Eyewear Shop GET Parameter update_status.php sql injection — Online Eyewear Shop 6.3 Medium2023-04-22
CVE-2023-2243 SourceCodester Complaint Management System POST Parameter registration.php sql injection — Complaint Management System 6.3 Medium2023-04-22
CVE-2023-2242 SourceCodester Online Computer and Laptop Store GET Parameter sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-22
CVE-2023-2218 SourceCodester Task Reminder System manage_user.php sql injection — Task Reminder System 6.3 Medium2023-04-21
CVE-2023-2217 SourceCodester Task Reminder System manage_reminder.php sql injection — Task Reminder System 6.3 Medium2023-04-21
CVE-2023-2215 Campcodes Coffee Shop POS System manage_user.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2214 Campcodes Coffee Shop POS System manage_sale.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2213 Campcodes Coffee Shop POS System manage_product.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2212 Campcodes Coffee Shop POS System view_product.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2211 Campcodes Coffee Shop POS System manage_category.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2210 Campcodes Coffee Shop POS System view_category.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2209 Campcodes Coffee Shop POS System view_details.php sql injection — Coffee Shop POS System 6.3 Medium2023-04-21
CVE-2023-2208 Campcodes Retro Basketball Shoes Online Store details.php sql injection — Retro Basketball Shoes Online Store 6.3 Medium2023-04-21
CVE-2023-2207 Campcodes Retro Basketball Shoes Online Store contactus1.php sql injection — Retro Basketball Shoes Online Store 6.3 Medium2023-04-21
CVE-2023-2206 Campcodes Retro Basketball Shoes Online Store contactus.php sql injection — Retro Basketball Shoes Online Store 6.3 Medium2023-04-21

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8864 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.