Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) — Vulnerability Class 8867

8867 vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11076 Campcodes Online Learning Management System edit_teacher.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11075 Campcodes Online Learning Management System de_activate.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11074 code-projects Project Monitoring System login.php sql injection — Project Monitoring System 7.3 High2025-09-27
CVE-2025-11071 SeaCMS Cron Task Management admin_cron.php sql injection — SeaCMS 4.7 Medium2025-09-27
CVE-2025-11070 Projectworlds Online Shopping System cart_add.php sql injection — Online Shopping System 7.3 High2025-09-27
CVE-2025-11066 code-projects Online Bidding System bidlist.php sql injection — Online Bidding System 7.3 High2025-09-27
CVE-2025-11064 Campcodes Online Learning Management System teachers.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11063 Campcodes Online Learning Management System edit_department.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11062 Campcodes Online Learning Management System save_student.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11061 Campcodes Online Learning Management System edit_student.php sql injection — Online Learning Management System 7.3 High2025-09-27
CVE-2025-11057 SourceCodester Pet Grooming Management Software print_inv.php sql injection — Pet Grooming Management Software 7.3 High2025-09-27
CVE-2025-11056 ProjectsAndPrograms School Management System select-students.php sql injection — School Management System 6.3 Medium2025-09-27
CVE-2025-11055 SourceCodester Online Hotel Reservation System updateaddress.php sql injection — Online Hotel Reservation System 7.3 High2025-09-27
CVE-2025-11054 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job Portal 6.3 Medium2025-09-27
CVE-2025-11053 PHPGurukul Small CRM forgot-password.php sql injection — Small CRM 7.3 High2025-09-27
CVE-2025-11052 kidaze CourseSelectionSystem COUNT3s5.php sql injection — CourseSelectionSystem 7.3 High2025-09-27
CVE-2025-59939 WeGIA vulnerable to SQL Injection into method `excluir` of the `ProdutoControle` class in the parameter `id_produto`. — WeGIA 8.8 High2025-09-27
CVE-2025-11041 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job Portal 6.3 Medium2025-09-26
CVE-2025-11040 code-projects Hostel Management System index.php sql injection — Hostel Management System 7.3 High2025-09-26
CVE-2025-11039 Campcodes Computer Sales and Inventory System us_edit1.php sql injection — Computer Sales and Inventory System 7.3 High2025-09-26
CVE-2025-11038 itsourcecode Online Clinic Management System details.php sql injection — Online Clinic Management System 6.3 Medium2025-09-26
CVE-2025-11037 code-projects E-Commerce Website admin_index_search.php sql injection — E-Commerce Website 7.3 High2025-09-26
CVE-2025-11036 code-projects E-Commerce Website admin_account_update.php sql injection — E-Commerce Website 7.3 High2025-09-26
CVE-2025-11033 kidaze CourseSelectionSystem COUNT3s7.php sql injection — CourseSelectionSystem 7.3 High2025-09-26
CVE-2025-11032 kidaze CourseSelectionSystem COUNT3s6.php sql injection — CourseSelectionSystem 7.3 High2025-09-26
CVE-2025-60118 WordPress PGS Core Plugin <= 5.9.0 - SQL Injection Vulnerability — PGS Core 8.5 High2025-09-26
CVE-2025-60110 WordPress AllInOne - Banner Rotator Plugin <= 3.8 - SQL Injection Vulnerability — AllInOne - Banner Rotator 8.5 High2025-09-26
CVE-2025-60108 WordPress LambertGroup - AllInOne - Banner with Thumbnails Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Thumbnails 8.5 High2025-09-26
CVE-2025-60109 WordPress LambertGroup - AllInOne - Content Slider Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Content Slider 8.5 High2025-09-26
CVE-2025-60107 WordPress LambertGroup - AllInOne - Banner with Playlist Plugin <= 3.8 - SQL Injection Vulnerability — LambertGroup - AllInOne - Banner with Playlist 8.5 High2025-09-26

Vulnerabilities classified as CWE-89 (SQL命令中使用的特殊元素转义处理不恰当(SQL注入)) represent 8867 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.