Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8845

8845 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-25045 Asgaros Forum < 1.15.15 - Admin+ SQL Injection via forum_id — Asgaros Forum 7.2 -2022-01-24
CVE-2021-24865 Advanced Custom Fields: Extended < 0.8.8.7 - Admin+ SQL Injection — Advanced Custom Fields: Extended 7.2 -2022-01-24
CVE-2021-24858 WP Cookie User Info < 1.0.9 - Admin+ SQL Injection — Cookie Notification Plugin for WordPress – WP Cookie User Info 7.2 -2022-01-24
CVE-2022-23305 SQL injection in JDBC Appender in Apache Log4j V1 — Apache Log4j 1.x 9.8 -2022-01-18
CVE-2022-0258 SQL Injection in pimcore/pimcore — pimcore/pimcore 8.8 -2022-01-17
CVE-2021-25037 All In One SEO < 4.1.5.3 - Authenticated SQL Injection — All in One SEO – Best WordPress SEO Plugin – Easily Improve SEO Rankings & Increase Traffic 6.5 -2022-01-17
CVE-2022-0224 SQL Injection in dolibarr/dolibarr — dolibarr/dolibarr 8.8 -2022-01-14
CVE-2022-22055 Le-yan Co., Ltd. dental management system - SQL Injection — Dental Management System 9.8 Critical2022-01-14
CVE-2021-37197 Siemens Comos SQL注入漏洞 — COMOS V10.2 8.8 -2022-01-11
CVE-2022-21666 SQL Injection in useredit.php — USOC 7.2 High2022-01-10
CVE-2021-25054 WPcalc <= 2.1 - Authenticated SQL Injection — WPcalc – create any online calculators 7.2 -2022-01-10
CVE-2021-24949 The Plus Addons for Elementor Pro < 5.0.7 - Unauthenticated SQL Injection — The Plus Addons for Elementor - Pro 7.2 -2022-01-10
CVE-2021-24862 RegistrationMagic < 5.0.1.6 - Admin+ SQL Injection — RegistrationMagic – Custom Registration Forms, User Registration and User Login Plugin 7.2 -2022-01-10
CVE-2022-21664 SQL injection in WordPress — wordpress-develop 7.4 High2022-01-06
CVE-2022-21661 SQL injection in WordPress — wordpress-develop 8.0 High2022-01-06
CVE-2022-21644 SQL Injection via search in USOC — USOC 9.1 Critical2022-01-04
CVE-2022-21643 SQL Injection in USOC — USOC 10.0 Critical2022-01-04
CVE-2021-25030 Events Made Easy < 2.2.36 - Subscriber+ SQL Injection — Events Made Easy 8.8 -2022-01-03
CVE-2021-25023 Speed Booster Pack < 4.3.3.1 - Admin+ SQL Injection — Speed Booster Pack ⚡ PageSpeed Optimization Suite 7.2 -2022-01-03
CVE-2021-24786 Download Monitor < 4.4.5 - Admin+ SQL Injection — Download Monitor 7.2 -2022-01-03
CVE-2021-36722 Emuse - eServices / eNvoice SQL injection — eServices / eNvoice 7.1 High2021-12-29
CVE-2021-44161 Changing Information Technology Inc. MOTP(Mobile One Time Password) - SQL Injection — MOTP(Mobile One Time Password) 8.8 High2021-12-29
CVE-2021-24753 Rich Reviews by Starfish < 1.9.6 - Admin+ SQL Injection — Rich Reviews by Starfish 7.2 -2021-12-27
CVE-2021-21937 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21936 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21935 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21934 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21933 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21932 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22
CVE-2021-21930 Advantech R-SeeNet SQL注入漏洞 — Advantech 6.5 -2021-12-22

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8845 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.