Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8881

8881 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-30478 WordPress Announcement & Notification Banner – Bulletin plugin <= 3.8.5 - SQL Injection vulnerability — WordPress Announcement & Notification Banner Plugin – Bulletin 7.6 High2024-03-29
CVE-2023-6191 SQLi in WebPDKS — WebPDKS 9.8 Critical2024-03-29
CVE-2024-0956 WP ERP <= 1.13.0 - Authenticated (AccountingManager+) SQL Injection — ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support 4.9 Medium2024-03-29
CVE-2024-0608 WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting <= 1.13.1 - Authenticated (Subscriber+) SQL Injection — ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support 6.5 Medium2024-03-29
CVE-2024-0913 WP ERP <= 1.13.0 - Authenticated (Accounting Manager+) SQL Injection — ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support 7.2 High2024-03-29
CVE-2024-3042 SourceCodester Simple Subscription Website manage_user.php sql injection — Simple Subscription Website 6.3 Medium2024-03-28
CVE-2024-3041 Netentsec NS-ASG Application Security Gateway listloginfo.php sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-28
CVE-2024-3040 Netentsec NS-ASG Application Security Gateway list_crl_conf sql injection — NS-ASG Application Security Gateway 6.3 Medium2024-03-28
CVE-2024-3039 Shanghai Brad Technology BladeX API export-user sql injection — BladeX 6.3 Medium2024-03-28
CVE-2023-39309 WordPress Avada Builder plugin <= 3.11.1 - Auth. SQL Injection vulnerability — Fusion Builder 8.5 High2024-03-28
CVE-2024-25924 WordPress WP Testimonials plugin <= 1.4.3 - Auth. SQL Injection vulnerability — WP Testimonials 7.6 High2024-03-28
CVE-2024-29239 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29238 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29237 Synology Surveillance Station 安全漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29236 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29235 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29234 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29233 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29232 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29230 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-29227 Synology Surveillance Station SQL注入漏洞 — Surveillance Station 5.4 Medium2024-03-28
CVE-2024-30236 WordPress Contest Gallery plugin <= 21.3.4 - SQL Injection vulnerability — Contest Gallery 8.5 High2024-03-28
CVE-2024-30237 WordPress Slider by Supsystic plugin <= 1.8.10 - SQL Injection vulnerability — Slider by Supsystic 7.6 High2024-03-28
CVE-2024-30239 WordPress Zoho Campaigns plugin <= 2.0.6 - SQL Injection vulnerability — Zoho Campaigns 8.5 High2024-03-28
CVE-2024-30240 WordPress Calendarista plugin <= 15.5.7 - SQL Injection vulnerability — Calendarista 8.5 High2024-03-28
CVE-2024-30241 WordPress ProfileGrid – User Profiles, Memberships, Groups and Communities plugin <= 5.7.1 - Contributor+ SQL Injection vulnerability — ProfileGrid 8.5 High2024-03-28
CVE-2024-30242 WordPress Contact Form to Any API plugin <= 1.1.8 - Auth. SQL Injection vulnerability — Contact Form to Any API 8.5 High2024-03-28
CVE-2024-30243 WordPress Tooltips plugin < 9.4.5 - Auth. SQL Injection vulnerability — WordPress Tooltips 8.5 High2024-03-28
CVE-2024-30244 WordPress Church Admin plugin <= 4.0.27 - SQL Injection via shortcode vulnerability — Church Admin 8.5 High2024-03-28
CVE-2024-30245 WordPress DecaLog plugin <= 3.9.0 - SQL Injection vulnerability — DecaLog 7.6 High2024-03-28

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8881 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.