Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8842

8842 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24669 MAZ Loader < 1.3.3 - Contributor+ SQL Injection — MAZ Loader – Preloader Builder for WordPress 8.8 -2021-11-08
CVE-2021-24631 Unlimited PopUps <= 4.5.3 - Author+ SQL Injection — Unlimited PopUps 8.8 -2021-11-08
CVE-2021-24630 Schreikasten <= 0.14.18 - Author+ SQL Injections — Schreikasten 8.8 -2021-11-08
CVE-2021-24629 Post Content XMLRPC <= 1.0 - Admin+ SQL Injections — Post Content XMLRPC 7.2 -2021-11-08
CVE-2021-24628 Wow Forms <= 3.1.3 - Admin+ SQL Injection — Wow Forms – create any form with custom style 7.2 -2021-11-08
CVE-2021-24627 G Auto-Hyperlink <= 1.0.1 - Admin+ SQL Injection — G Auto-Hyperlink 7.2 -2021-11-08
CVE-2021-24626 Chameleon CSS <= 1.2 - Subscriber+ SQL Injection — Chameleon CSS 8.8 -2021-11-08
CVE-2021-24625 SpiderCatalog <= 1.7.3 - Admin+ SQL Injection — SpiderCatalog 7.2 -2021-11-08
CVE-2021-24575 WPSchoolPress < 2.1.10 - Multiple Authenticated SQL Injections — School Management System – WPSchoolPress 8.8 -2021-11-08
CVE-2021-41187 SQL Injection in DHIS2 Tracker API — dhis2-core 8.1 High2021-11-01
CVE-2021-31849 Data Loss Prevention (DLP) ePO extension - SQL injection — Data Loss Prevention (DLP) ePO extension 8.4 High2021-11-01
CVE-2021-39179 SQL Injection in DHIS2 Tracker API — dhis2-core 8.8 High2021-10-29
CVE-2021-26609 WordPress Mangboard SQL-Injection vulnerability — WordPress Mangboard 7.5 High2021-10-26
CVE-2021-24774 Check & Log Email < 1.0.3 - Admin+ SQL Injections — Check & Log Email 7.2 -2021-10-25
CVE-2021-24769 Permalink Manager Lite < 2.2.13.1 - Admin+ SQL Injection — Permalink Manager Lite 7.2 -2021-10-25
CVE-2021-24662 Game Server Status <= 1.0 - Admin+ SQL Injection — Game Server Status 7.2 -2021-10-25
CVE-2021-38481 AUVESY Versiondog — Versiondog 8.1 High2021-10-22
CVE-2021-41154 SQL injection in the "SVN core" commits browser — tuleap 8.8 High2021-10-18
CVE-2021-41155 SQL injection in CVS revisions browser — tuleap 8.8 High2021-10-18
CVE-2021-41971 Possible SQL Injection when template processing is enabled — Apache Superset 8.8 -2021-10-18
CVE-2021-24754 MainWP Child Reports < 2.0.8 - Admin+ SQL Injection — MainWP Child Reports 7.2 -2021-10-18
CVE-2021-41148 The update of the CI job targeted by a widget is vulnerable to blind SQL injections — tuleap 8.8 High2021-10-15
CVE-2021-41147 SQL injection in the planning edition panel — tuleap 7.2 High2021-10-15
CVE-2021-42334 Huachu Digital Technology Co.,Ltd. Easytest - SQL Injection-2 — Easytest 8.8 High2021-10-15
CVE-2021-42333 Huachu Digital Technology Co.,Ltd. Easytest - SQL Injection-1 — Easytest 8.8 High2021-10-15
CVE-2021-33177 Nagios XI SQL注入漏洞 — Nagios XI 8.8 -2021-10-14
CVE-2021-33736 Siemens SINEC NMS SQL注入漏洞 — SINEC NMS 7.2 -2021-10-12
CVE-2021-33734 Siemens SINEC NMS SQL注入漏洞 — SINEC NMS 7.2 -2021-10-12
CVE-2021-33735 Siemens SINEC NMS SQL注入漏洞 — SINEC NMS 7.2 -2021-10-12
CVE-2021-33733 Siemens SINEC NMS SQL注入漏洞 — SINEC NMS 7.2 -2021-10-12

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8842 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.