Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8861

8861 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10597 kidaze CourseSelectionSystem COUNT2.php sql injection — CourseSelectionSystem 7.3 High2025-09-17
CVE-2025-10596 SourceCodester Online Exam Form Submission index.php sql injection — Online Exam Form Submission 7.3 High2025-09-17
CVE-2025-10595 SourceCodester Online Student File Management System delete_user.php sql injection — Online Student File Management System 6.3 Medium2025-09-17
CVE-2025-10594 SourceCodester Online Student File Management System delete_student.php sql injection — Online Student File Management System 6.3 Medium2025-09-17
CVE-2025-10593 SourceCodester Online Student File Management System update_student.php sql injection — Online Student File Management System 6.3 Medium2025-09-17
CVE-2025-10592 itsourcecode Online Public Access Catalog OPAC POST Parameter mysearch.php sql injection — Online Public Access Catalog OPAC 6.3 Medium2025-09-17
CVE-2025-10439 SQLi in Yordam Library Automation System — Yordam Library Automation System 9.8 Critical2025-09-17
CVE-2025-10042 Quiz Maker <= 6.7.0.56 - Unauthenticated SQL Injection — Quiz Maker 5.9 Medium2025-09-17
CVE-2025-10565 Campcodes Grocery Sales and Inventory System ajax.php sql injection — Grocery Sales and Inventory System 7.3 High2025-09-16
CVE-2025-10564 Campcodes Grocery Sales and Inventory System ajax.php sql injection — Grocery Sales and Inventory System 7.3 High2025-09-16
CVE-2025-10563 Campcodes Grocery Sales and Inventory System ajax.php sql injection — Grocery Sales and Inventory System 7.3 High2025-09-16
CVE-2025-10562 Campcodes Grocery Sales and Inventory System ajax.php sql injection — Grocery Sales and Inventory System 7.3 High2025-09-16
CVE-2024-13174 SQLi in E1 Informatics' Web Application — Web Application 8.6 High2025-09-16
CVE-2024-13149 SQLi in Arma Store's Armalife — Armalife 9.8 Critical2025-09-16
CVE-2025-7744 SQLi in Dolusoft's Omaspot — Omaspot 9.8 Critical2025-09-16
CVE-2024-12913 SQLi in Megatek Communication System's Azora Wireless Network Management — Azora Wireless Network Management 8.8 High2025-09-16
CVE-2025-4688 SQLi in BGS Interactive's SINAV.LINK Exam Result Module — SINAV.LINK Exam Result Module 9.8 Critical2025-09-16
CVE-2025-10483 SourceCodester Online Student File Management System save_user.php sql injection — Online Student File Management System 6.3 Medium2025-09-15
CVE-2025-10482 SourceCodester Online Student File Management System index.php sql injection — Online Student File Management System 7.3 High2025-09-15
CVE-2025-10481 SourceCodester Online Student File Management System remove_file.php sql injection — Online Student File Management System 6.3 Medium2025-09-15
CVE-2025-10479 SourceCodester Online Student File Management System index.php sql injection — Online Student File Management System 7.3 High2025-09-15
CVE-2025-10477 kidaze CourseSelectionSystem eligibility.php sql injection — CourseSelectionSystem 6.3 Medium2025-09-15
CVE-2025-10473 yangzongzhuan RuoYi Blacklist SqlUtil.java filterKeyword sql injection — RuoYi 6.3 Medium2025-09-15
CVE-2025-10459 PHPGurukul Beauty Parlour Management System all-appointment.php sql injection — Beauty Parlour Management System 7.3 High2025-09-15
CVE-2025-10448 Campcodes Online Job Finder System index.php sql injection — Online Job Finder System 7.3 High2025-09-15
CVE-2025-10446 Campcodes Computer Sales and Inventory System cust_searchfrm.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-15
CVE-2025-10445 Campcodes Computer Sales and Inventory System us_transac.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-15
CVE-2025-10444 Campcodes Online Job Finder System advancesearch.php sql injection — Online Job Finder System 7.3 High2025-09-15
CVE-2025-10436 Campcodes Computer Sales and Inventory System sup_searchfrm.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-15
CVE-2025-10435 Campcodes Computer Sales and Inventory System cust_edit1.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-15

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8861 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.