Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8861

8861 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-35956 update_by_case before 0.1.3 vulnerable to sql injection — activerecord-update-by-case 5.8 Medium2022-08-12
CVE-2022-2803 SourceCodester Zoo Management System animals.php sql injection — Zoo Management System 6.3 Medium2022-08-12
CVE-2022-2802 SourceCodester Gas Agency Management System login.php sql injection — Gas Agency Management System 7.3 High2022-08-12
CVE-2022-2801 SourceCodester Automated Beer Parlour Billing System Login sql injection — Automated Beer Parlour Billing System 6.3 Medium2022-08-12
CVE-2022-2797 SourceCodester Student Information System view_student.php sql injection — Student Information System 6.3 Medium2022-08-12
CVE-2022-2774 SourceCodester Library Management System student.php sql injection — Library Management System 6.3 Medium2022-08-11
CVE-2022-2772 SourceCodester Apartment Visitor Management System action-visitor.php sql injection — Apartment Visitor Management System 6.3 Medium2022-08-11
CVE-2022-2771 SourceCodester Simple Online Book Store System bookPerPub.php sql injection — Simple Online Book Store System 6.3 Medium2022-08-11
CVE-2022-2770 SourceCodester Simple Online Book Store System book.php sql injection — Simple Online Book Store System 6.3 Medium2022-08-11
CVE-2022-2766 SourceCodester Loan Management System index.php sql injection — Loan Management System 7.3 High2022-08-11
CVE-2022-2747 SourceCodester Simple Online Book Store book.php sql injection — Simple Online Book Store 6.3 Medium2022-08-11
CVE-2022-2745 SourceCodester Gym Management System Add New Trainer add_trainers.php sql injection — Gym Management System 6.3 Medium2022-08-11
CVE-2022-2728 SourceCodester Gym Management System index.php sql injection — Gym Management System 6.3 Medium2022-08-09
CVE-2022-2727 SourceCodester Gym Management System login.php sql injection — Gym Management System 6.3 Medium2022-08-09
CVE-2022-2726 SEMCMS Ant_Check.php sql injection — SEMCMS 6.3 Medium2022-08-09
CVE-2022-2724 SourceCodester Employee Management System aprocess.php sql injection — Employee Management System 6.3 Medium2022-08-09
CVE-2022-2723 SourceCodester Employee Management System eprocess.php sql injection — Employee Management System 6.3 Medium2022-08-09
CVE-2022-2722 SourceCodester Simple Student Information System manage_course.php sql injection — Simple Student Information System 6.3 Medium2022-08-09
CVE-2022-2715 SourceCodester Employee Management System eloginwel.php sql injection — Employee Management System 6.3 Medium2022-08-09
CVE-2022-2269 Website File Changes Monitor < 1.8.3 - Admin+ SQLi — Website File Changes Monitor 7.2 -2022-08-08
CVE-2022-2708 SourceCodester Gym Management System login.php sql injection — Gym Management System 5.5 Medium2022-08-08
CVE-2022-2707 SourceCodester Online Class and Exam Scheduling System faculty_sched.php sql injection — Online Class and Exam Scheduling System 6.3 Medium2022-08-08
CVE-2022-2706 SourceCodester Online Class and Exam Scheduling System class_sched.php sql injection — Online Class and Exam Scheduling System 6.3 Medium2022-08-08
CVE-2022-2705 SourceCodester Simple Student Information System manage_department.php sql injection — Simple Student Information System 6.3 Medium2022-08-08
CVE-2022-2703 SourceCodester Gym Management System Exercises Module sql injection — Gym Management System 6.3 Medium2022-08-08
CVE-2022-2700 SourceCodester Gym Management System GET Parameter sql injection — Gym Management System 4.7 Medium2022-08-08
CVE-2022-2699 SourceCodester Simple E-Learning System claire_blake sql injection — Simple E-Learning System 6.3 Medium2022-08-08
CVE-2022-2698 SourceCodester Simple E-Learning System search.php sql injection — Simple E-Learning System 6.3 Medium2022-08-07
CVE-2022-2697 SourceCodester Simple E-Learning System comment_frame.php sql injection — Simple E-Learning System 6.3 Medium2022-08-07
CVE-2022-2693 SourceCodester Electronic Medical Records System UPDATE Statement register.php sql injection — Electronic Medical Records System 6.3 Medium2022-08-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8861 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.