Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8861

8861 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-24755 myCred < 2.3 - Subscriber+ SQL Injection — myCred – Points, Rewards, Gamification, Ranks, Badges & Loyalty Plugin 8.8 -2021-11-29
CVE-2021-24748 Email Before Download < 6.8 - Admin+ SQL Injection — Email Before Download 8.8 -2021-11-29
CVE-2021-36916 WordPress Hide My WP premium plugin <= 6.2.3 - Unauthenticated SQL injection (SQLi) vulnerability — Hide My WP (WordPress plugin) 8.6 High2021-11-24
CVE-2021-36300 Dell Emc Idrac SQL注入漏洞 — Integrated Dell Remote Access Controller (iDRAC) 6.5 Medium2021-11-23
CVE-2021-36299 DELL Dell EMC iDRAC9 SQL注入漏洞 — Integrated Dell Remote Access Controller (iDRAC) 7.1 High2021-11-23
CVE-2021-24877 MainWP Child < 4.1.8 - Admin+ SQL Injection — MainWP Child - Securely connects sites to the MainWP WordPress Manager Dashboard 7.2 -2021-11-23
CVE-2021-3935 PgBouncer 信任管理问题漏洞 — pgbouncer 8.1 -2021-11-22
CVE-2021-43408 Duplicate Post WordPress Plugin SQL Injection Vulnerability — Duplicate Post WordPress Plugin 6.5 Medium2021-11-19
CVE-2021-40129 Cisco Common Services Platform Collector SQL Injection Vulnerability — Cisco Common Services Platform Collector Software 4.9 Medium2021-11-18
CVE-2021-24847 SEO Redirection < 8.2 - Subscriber+ SQL Injection — SEO Redirection Plugin – 301 Redirect Manager 8.8 -2021-11-17
CVE-2021-24772 Stream < 3.8.2 - Admin+ SQL Injection — Stream 8.8 -2021-11-17
CVE-2021-24758 Email Log < 2.4.7 - Admin+ SQL Injection — Email Log 8.8 -2021-11-17
CVE-2021-3958 SQL Injection Vulnerability in Ipack SCADA Software — Ipack SCADA Software 9.8 Critical2021-11-16
CVE-2021-24844 Affiliate Manager < 2.8.7 - Admin+ SQL injection — Affiliates Manager 7.2 -2021-11-08
CVE-2021-24835 WCFM - Frontend Manager for WooCommerce < 6.5.12 - Customer/Subscriber+ SQL Injection — WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible 8.8 -2021-11-08
CVE-2021-24829 Visitor Traffic Real Time Statistics < 3.9 - Subscriber+ SQL Injection — Visitor Traffic Real Time Statistics 8.8 -2021-11-08
CVE-2021-24827 Asgaros Forum < 1.15.13 - Unauthenticated SQL Injection — Asgaros Forum 9.8 -2021-11-08
CVE-2021-24791 Header Footer Code Manager < 1.1.14 - Admin+ SQL Injections — Header Footer Code Manager 7.2 -2021-11-08
CVE-2021-24731 Pie Register < 3.7.1.6 - Unauthenticated SQL Injection — Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes 9.8 -2021-11-08
CVE-2021-24669 MAZ Loader < 1.3.3 - Contributor+ SQL Injection — MAZ Loader – Preloader Builder for WordPress 8.8 -2021-11-08
CVE-2021-24631 Unlimited PopUps <= 4.5.3 - Author+ SQL Injection — Unlimited PopUps 8.8 -2021-11-08
CVE-2021-24630 Schreikasten <= 0.14.18 - Author+ SQL Injections — Schreikasten 8.8 -2021-11-08
CVE-2021-24629 Post Content XMLRPC <= 1.0 - Admin+ SQL Injections — Post Content XMLRPC 7.2 -2021-11-08
CVE-2021-24628 Wow Forms <= 3.1.3 - Admin+ SQL Injection — Wow Forms – create any form with custom style 7.2 -2021-11-08
CVE-2021-24627 G Auto-Hyperlink <= 1.0.1 - Admin+ SQL Injection — G Auto-Hyperlink 7.2 -2021-11-08
CVE-2021-24626 Chameleon CSS <= 1.2 - Subscriber+ SQL Injection — Chameleon CSS 8.8 -2021-11-08
CVE-2021-24625 SpiderCatalog <= 1.7.3 - Admin+ SQL Injection — SpiderCatalog 7.2 -2021-11-08
CVE-2021-24575 WPSchoolPress < 2.1.10 - Multiple Authenticated SQL Injections — School Management System – WPSchoolPress 8.8 -2021-11-08
CVE-2021-41187 SQL Injection in DHIS2 Tracker API — dhis2-core 8.1 High2021-11-01
CVE-2021-31849 Data Loss Prevention (DLP) ePO extension - SQL injection — Data Loss Prevention (DLP) ePO extension 8.4 High2021-11-01

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8861 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.