Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8863

8863 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-27485 Fortinet FortiSandbox SQL注入漏洞 — FortiSandbox 6.2 Medium2023-04-11
CVE-2023-30465 Apache InLong: SQL injection in apache inLong 1.5.0 — Apache InLong 5.3 -2023-04-11
CVE-2015-10100 Dynamic Widgets Plugin dynwid_class.php sql injection — Dynamic Widgets Plugin 6.3 Medium2023-04-10
CVE-2023-1969 SourceCodester Online Eyewear Shop GET Parameter manage_stock.php sql injection — Online Eyewear Shop 6.3 Medium2023-04-10
CVE-2015-10099 CP Appointment Calendar Plugin dex_appointments.php dex_process_ready_to_go_appointment sql injection — CP Appointment Calendar Plugin 6.3 Medium2023-04-10
CVE-2012-10011 HD FLV PLayer Plugin functions.php hd_update_media sql injection — HD FLV PLayer Plugin 6.3 Medium2023-04-09
CVE-2023-1964 PHPGurukul Bank Locker Management System Password Reset recovery.php sql injection — Bank Locker Management System 7.3 High2023-04-09
CVE-2023-1963 PHPGurukul Bank Locker Management System Search index.php sql injection — Bank Locker Management System 6.3 Medium2023-04-09
CVE-2023-1962 SourceCodester Best Online News Portal POST Parameter forgot-password.php sql injection — Best Online News Portal 7.3 High2023-04-09
CVE-2023-1960 SourceCodester Online Computer and Laptop Store sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1959 SourceCodester Online Computer and Laptop Store sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1958 SourceCodester Online Computer and Laptop Store sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1957 SourceCodester Online Computer and Laptop Store Subcategory sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1955 SourceCodester Online Computer and Laptop Store User Registration login.php sql injection — Online Computer and Laptop Store 7.3 High2023-04-08
CVE-2023-1954 SourceCodester Online Computer and Laptop Store manage.php save_inventory sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1953 SourceCodester Online Computer and Laptop Store index.php sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2013-10023 Editorial Calendar Plugin edcal.php edcal_filter_where sql injection — Editorial Calendar Plugin 6.3 Medium2023-04-08
CVE-2023-1952 SourceCodester Online Computer and Laptop Store Product Search ?p=products sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1951 SourceCodester Online Computer and Laptop Store brand.php delete_brand sql injection — Online Computer and Laptop Store 6.3 Medium2023-04-08
CVE-2023-1950 PHPGurukul BP Monitoring Management System Password Recovery password-recovery.php sql injection — BP Monitoring Management System 6.3 Medium2023-04-08
CVE-2023-1949 PHPGurukul BP Monitoring Management System Change Password change-password.php sql injection — BP Monitoring Management System 6.3 Medium2023-04-08
CVE-2023-1941 SourceCodester Simple and Beautiful Shopping Cart System login.php sql injection — Simple and Beautiful Shopping Cart System 7.3 High2023-04-07
CVE-2023-1940 SourceCodester Simple and Beautiful Shopping Cart System delete_user_query.php sql injection — Simple and Beautiful Shopping Cart System 6.3 Medium2023-04-07
CVE-2023-1909 PHPGurukul BP Monitoring Management System User Profile Update profile.php sql injection — BP Monitoring Management System 4.7 Medium2023-04-07
CVE-2023-1908 SourceCodester Simple Mobile Comparison Website GET Parameter view_category.php sql injection — Simple Mobile Comparison Website 6.3 Medium2023-04-06
CVE-2023-28849 GLPI vulnerable to SQL injection and Stored XSS via inventory agent request — glpi 10.0 Critical2023-04-05
CVE-2023-28838 GLPI vulnerable to SQL injection through dynamic reports — glpi 9.6 Critical2023-04-05
CVE-2022-4935 WCFM Marketplace <= 3.4.11 - Missing Authorization — WCFM Marketplace – Multivendor Marketplace for WooCommerce 8.8 High2023-04-05
CVE-2023-1856 SourceCodester Air Cargo Management System GET Parameter track_shipment.php sql injection — Air Cargo Management System 6.3 Medium2023-04-05
CVE-2023-1850 SourceCodester Online Payroll System login.php sql injection — Online Payroll System 6.3 Medium2023-04-05

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8863 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.