Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8853

8853 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-2135 Advantech iView — iView 7.5 High2022-07-22
CVE-2022-2137 Advantech iView — iView 4.9 Medium2022-07-22
CVE-2022-2492 SourceCodester Library Management System index.php sql injection — Library Management System 6.3 Medium2022-07-20
CVE-2022-2491 SourceCodester Library Management System lab.php sql injection — Library Management System 6.3 Medium2022-07-20
CVE-2022-2490 SourceCodester Simple E-Learning System search.php sql injection — Simple E-Learning System 6.3 Medium2022-07-20
CVE-2022-2489 SourceCodester Simple E-Learning System classRoom.php sql injection — Simple E-Learning System 6.3 Medium2022-07-20
CVE-2022-32456 Data Systems Consulting Co., Ltd. BPM - SQL Injection — BPM 9.8 Critical2022-07-20
CVE-2022-2468 SourceCodester Garage Management System editbrand.php sql injection — Garage Management System 6.3 Medium2022-07-19
CVE-2022-2467 SourceCodester Garage Management System login.php sql injection — Garage Management System 7.3 High2022-07-19
CVE-2017-20138 Itech Auction Script mcategory.php Blind sql injection — Auction Script 6.3 Medium2022-07-16
CVE-2017-20137 Itech B2B Script catcompany.php sql injection — B2B Script 6.3 Medium2022-07-16
CVE-2017-20136 Itech Classifieds Script subpage.php sql injection — Classifieds Script 6.3 Medium2022-07-16
CVE-2017-20135 Itech Dating Script see_more_details.php sql injection — Dating Script 6.3 Medium2022-07-16
CVE-2017-20134 Itech Freelancer Script category.php sql injection — Freelancer Script 6.3 Medium2022-07-16
CVE-2017-20132 Itech Multi Vendor Script product-list.php sql injection — Multi Vendor Script 6.3 Medium2022-07-16
CVE-2017-20131 Itech News Portal information.php sql injection — News Portal 6.3 Medium2022-07-16
CVE-2017-20130 Itech Real Estate Script search_property.php sql injection — Real Estate Script 6.3 Medium2022-07-16
CVE-2017-20129 LogoStore search.php sql injection — LogoStore 6.3 Medium2022-07-14
CVE-2017-20128 KB Messages PHP Script sql injection — KB Messages PHP Script 7.3 High2022-07-13
CVE-2017-20127 KB Login Authentication Script sql injection — KB Login Authentication Script 7.3 High2022-07-13
CVE-2017-20126 KB Affiliate Referral Script index.php sql injection — KB Affiliate Referral Script 7.3 High2022-07-13
CVE-2022-32246 SAP Business Objects SQL注入漏洞 — SAP BusinessObjects Business Intelligence Platform (Visual Difference Application) 7.1 -2022-07-12
CVE-2022-2298 SourceCodester Clinics Patient Management System Login Page index.php sql injection — Clinics Patient Management System 7.3 High2022-07-12
CVE-2022-2263 Online Hotel Booking System Room edit_room_cat.php sql injection — Online Hotel Booking System 4.7 Medium2022-07-12
CVE-2022-2262 Online Hotel Booking System Room edit_all_room.php sql injection — Online Hotel Booking System 4.7 Medium2022-07-12
CVE-2022-1057 Pricing Deals for WooCommerce <= 2.0.2.02 - Unauthenticated SQLi — Pricing Deals for WooCommerce 9.8 -2022-07-11
CVE-2022-26348 Gallagher Command Centre Server SQL注入漏洞 — Command Centre 8.2 High2022-07-06
CVE-2022-30619 Agile Point - Agile Point NX SQL injection (SQLi) — Agile Point NX 5.9 Medium2022-07-06
CVE-2022-34878 VICIDial 2.14b0.5 SVN 3550 was discovered to contain a SQL injection vulnerability at /vicidial/user_stats.php. — VICIdial 5.5 Medium2022-07-05
CVE-2022-34877 VICIDial 2.14b0.5 SVN 3550 was discovered to contains a SQL injection vulnerability at /vicidial/AST_agent_time_sheet.php. — VICIdial 6.4 Medium2022-07-05

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8853 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.