Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8851

8851 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2017-20124 Online Hotel Booking System Pro Plugin roomtype-details.php sql injection — Online Hotel Booking System Pro Plugin 6.3 Medium2022-06-30
CVE-2022-31058 SQL injection via the field name of a tracker in Tuleap — tuleap 7.2 High2022-06-29
CVE-2022-31061 SQL injection on login page in GLPI — glpi 9.8 Critical2022-06-28
CVE-2017-20104 Simplessus Cookie Time sql injection — Simplessus 7.3 High2022-06-28
CVE-2022-31056 SQL injection with _actor parameter in GLPI — glpi 9.8 Critical2022-06-28
CVE-2022-31101 SQL Injection in prestashop/blockwishlist — blockwishlist 8.1 High2022-06-27
CVE-2017-20103 Kama Click Counter Plugin admin.php Blind sql injection — Kama Click Counter Plugin 6.3 Medium2022-06-27
CVE-2022-31092 SQL injection in pimcore — pimcore 7.5 High2022-06-27
CVE-2022-31082 SQL Injection via package deployment tasks in glpi-inventory-plugin — glpi-inventory-plugin 5.8 Medium2022-06-27
CVE-2022-2214 SourceCodester Library Management System bookdetails.php sql injection — Library Management System 6.3 Medium2022-06-27
CVE-2017-20067 Hindu Matrimonial Script sql injection — Hindu Matrimonial Script 7.3 High2022-06-21
CVE-2022-1905 Events Made Easy < 2.2.81 - Unauthenticated SQLi — Events Made Easy 9.8 -2022-06-20
CVE-2022-1472 Better Find and Replace < 1.3.6 - Admin+ SQLi — Better Find and Replace 7.2 -2022-06-20
CVE-2022-26669 ASUS Control Center - SQL Injection — Control Center 8.8 High2022-06-20
CVE-2022-2086 SourceCodester Bank Management System login.php sql injection — Bank Management System 6.3 Medium2022-06-15
CVE-2022-23169 Amodat - Mobile Application Gateway SQL Injection (SQLi) — Amodat 5.9 Medium2022-06-13
CVE-2022-23168 Amodat - Mobile Application Gateway SQL Injection (SQLi) — Amodat 5.9 Medium2022-06-13
CVE-2022-1768 RSVPMaker <= 9.3.2 - Unauthenticated SQL Injection — RSVPMaker 9.8 Critical2022-06-13
CVE-2022-1800 Export any WordPress data to XML/CSV < 1.3.5 - Admin+ SQL Injection — Export any WordPress data to XML/CSV 8.8 -2022-06-13
CVE-2022-0827 Bestbooks <= 2.6.3 - Unauthenticated SQLi — Bestbooks 9.8 -2022-06-13
CVE-2022-0786 KiviCare < 2.3.9 - Unauthenticated SQLi — KiviCare – Clinic & Patient Management System (EHR) 9.8 -2022-06-13
CVE-2022-2067 SQL Injection in francoisjacquet/rosariosis — francoisjacquet/rosariosis 9.1 -2022-06-13
CVE-2017-20042 Navetti PricePoint Blind sql injection — PricePoint 6.3 Medium2022-06-13
CVE-2017-20032 PHPList Subscription sql injection — PHPList 6.3 Medium2022-06-10
CVE-2017-20030 PHPList Sending Campain sql injection — PHPList 4.7 Medium2022-06-10
CVE-2017-20029 PHPList Edit Subscription index.php sql injection — PHPList 7.3 High2022-06-10
CVE-2022-29250 SQL injection in GLPI — glpi 8.1 High2022-06-09
CVE-2022-2018 SourceCodester Prison Management System Inmate sql injection — Prison Management System 4.7 Medium2022-06-07
CVE-2022-2017 SourceCodester Prison Management System Visit view_visit.php sql injection — Prison Management System 4.7 Medium2022-06-07
CVE-2022-1692 CP Image Store with Slideshow < 1.0.68 - Unauthenticated SQLi — CP Image Store with Slideshow 9.8 -2022-06-06

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8851 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.