CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Description
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7
CVEs mapped to this weakness (20,855)
page 104 of 1,043| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-47740 | Cri | 0.64 | 9.8 | 0.01 | Jan 19, 2023 | Seltmann GmbH Content Management System 6 is vulnerable to SQL Injection via /index.php. | ||
| CVE-2022-46955 | Cri | 0.64 | 9.8 | 0.01 | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_queue. | ||
| CVE-2022-46954 | Cri | 0.64 | 9.8 | 0.01 | Jan 13, 2023 | Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_transaction. | ||
| CVE-2022-46471 | Cri | 0.64 | 9.8 | 0.01 | Jan 13, 2023 | Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php. | ||
| CVE-2022-47864 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeCategories.php. | ||
| CVE-2022-47862 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the customer_id parameter in ajax_represent.php. | ||
| CVE-2022-47861 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeLead.php. | ||
| CVE-2022-47860 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeProduct.php. | ||
| CVE-2022-47859 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php. | ||
| CVE-2022-47866 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php. | ||
| CVE-2022-47865 | Cri | 0.64 | 9.8 | 0.01 | Jan 11, 2023 | Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php. | ||
| CVE-2022-4422 | Cri | 0.64 | 9.8 | 0.01 | Jan 10, 2023 | Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0 | ||
| CVE-2023-0016 | Cri | 0.64 | 9.9 | 0.01 | Jan 10, 2023 | SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database. | ||
| CVE-2022-47790 | Cri | 0.64 | 9.8 | 0.01 | Jan 9, 2023 | Sourcecodester Dynamic Transaction Queuing System v1.0 is vulnerable to SQL Injection via /queuing/index.php?page=display&id=. | ||
| CVE-2022-38627 | Cri | 0.64 | 9.8 | 0.04 | Jan 3, 2023 | Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered to contain a SQL injection vulnerability via the idt parameter. | ||
| CVE-2022-39041 | Cri | 0.64 | 9.8 | 0.01 | Jan 3, 2023 | aEnrich a+HRD has insufficient user input validation for specific API parameter. An unauthenticated remote attacker can exploit this vulnerability to inject arbitrary SQL commands to access, modify and delete database. | ||
| CVE-2022-4059 | Cri | 0.64 | 9.8 | 0.05 | Jan 2, 2023 | The Cryptocurrency Widgets Pack WordPress plugin before 2.0 does not sanitise and escape some parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection. | ||
| CVE-2022-46442 | Cri | 0.64 | 9.8 | 0.01 | Dec 27, 2022 | dedecms <=V5.7.102 is vulnerable to SQL Injection. In sys_ sql_ n query.php there are no restrictions on the sql query. | ||
| CVE-2022-46764 | Cri | 0.64 | 9.8 | 0.02 | Dec 27, 2022 | A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution. | ||
| CVE-2020-24600 | Cri | 0.64 | 9.8 | 0.01 | Dec 26, 2022 | Shilpi CAPExWeb 1.1 allows SQL injection via a servlet/capexweb.cap_sendMail GET request. |
- risk 0.64cvss 9.8epss 0.01
Seltmann GmbH Content Management System 6 is vulnerable to SQL Injection via /index.php.
- risk 0.64cvss 9.8epss 0.01
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_queue.
- risk 0.64cvss 9.8epss 0.01
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_transaction.
- risk 0.64cvss 9.8epss 0.01
Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeCategories.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the customer_id parameter in ajax_represent.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeLead.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeProduct.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php.
- risk 0.64cvss 9.8epss 0.01
Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php.
- risk 0.64cvss 9.8epss 0.01
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php.
- risk 0.64cvss 9.8epss 0.01
Call Center System developed by Bulutses Information Technologies before version 3.0 has an unauthenticated Sql Injection vulnerability. This has been fixed in the version 3.0
- risk 0.64cvss 9.9epss 0.01
SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of this issue could lead to SQL injection vulnerability and could allow an attacker to access, modify, and/or delete data from the backend database.
- risk 0.64cvss 9.8epss 0.01
Sourcecodester Dynamic Transaction Queuing System v1.0 is vulnerable to SQL Injection via /queuing/index.php?page=display&id=.
- risk 0.64cvss 9.8epss 0.04
Nortek Linear eMerge E3-Series 0.32-08f, 0.32-07p, 0.32-07e, 0.32-09c, 0.32-09b, 0.32-09a, and 0.32-08e were discovered to contain a SQL injection vulnerability via the idt parameter.
- risk 0.64cvss 9.8epss 0.01
aEnrich a+HRD has insufficient user input validation for specific API parameter. An unauthenticated remote attacker can exploit this vulnerability to inject arbitrary SQL commands to access, modify and delete database.
- risk 0.64cvss 9.8epss 0.05
The Cryptocurrency Widgets Pack WordPress plugin before 2.0 does not sanitise and escape some parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.
- risk 0.64cvss 9.8epss 0.01
dedecms <=V5.7.102 is vulnerable to SQL Injection. In sys_ sql_ n query.php there are no restrictions on the sql query.
- risk 0.64cvss 9.8epss 0.02
A SQL injection issue in the web API in TrueConf Server 5.2.0.10225 (fixed in 5.2.6.10025) allows remote unauthenticated attackers to execute arbitrary SQL commands, ultimately leading to remote code execution.
- risk 0.64cvss 9.8epss 0.01
Shilpi CAPExWeb 1.1 allows SQL injection via a servlet/capexweb.cap_sendMail GET request.