CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Description
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7
CVEs mapped to this weakness (20,855)
page 117 of 1,043| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-32352 | Cri | 0.64 | 9.8 | 0.01 | Jun 14, 2022 | Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/classes/Master.php?f=delete_patient_admission. | ||
| CVE-2022-32336 | Cri | 0.64 | 9.8 | 0.01 | Jun 14, 2022 | Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/view_menu.php?id=. | ||
| CVE-2021-41662 | Cri | 0.64 | 9.8 | 0.02 | Jun 13, 2022 | The South Gate Inn Online Reservation System v1.0 contains an SQL injection vulnerability that can be chained with a malicious PHP file upload, which is caused by improper file handling in the editImg function. This vulnerability leads to remote code execution. | ||
| CVE-2021-41661 | Cri | 0.64 | 9.8 | 0.01 | Jun 13, 2022 | Church Management System version 1.0 is affected by a SQL anjection vulnerability through creating a user with a PHP file as an avatar image, which is accessible through the /uploads directory. This can lead to RCE on the web server by uploading a PHP webshell. | ||
| CVE-2022-0827 | Cri | 0.64 | 9.8 | 0.09 | Jun 13, 2022 | The Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users | ||
| CVE-2021-41756 | Cri | 0.64 | 9.8 | 0.01 | Jun 10, 2022 | dynamicMarkt <= 3.10 is affected by SQL injection in the kat parameter of index.php. | ||
| CVE-2021-41755 | Cri | 0.64 | 9.8 | 0.01 | Jun 10, 2022 | dynamicMarkt <= 3.10 is affected by SQL injection in the kat1 parameter of index.php. | ||
| CVE-2021-41754 | Cri | 0.64 | 9.8 | 0.01 | Jun 10, 2022 | dynamicMarkt <= 3.10 is affected by SQL injection in the parent parameter of index.php. | ||
| CVE-2022-0788 | Cri | 0.64 | 9.8 | 0.08 | Jun 8, 2022 | The WP Fundraising Donation and Crowdfunding Platform WordPress plugin before 1.5.0 does not sanitise and escape a parameter before using it in a SQL statement via one of it's REST route, leading to an SQL injection exploitable by unauthenticated users | ||
| CVE-2022-30927 | Cri | 0.64 | 9.8 | 0.01 | Jun 6, 2022 | A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable "id" parameter. | ||
| CVE-2022-31768 | Cri | 0.64 | 9.8 | 0.01 | Jun 6, 2022 | IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. | ||
| CVE-2022-29704 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | BrowsBox CMS v4.0 was discovered to contain a SQL injection vulnerability. | ||
| CVE-2022-31993 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/classes/Master.php?f=delete_service. | ||
| CVE-2022-31991 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_court. | ||
| CVE-2022-31990 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_product. | ||
| CVE-2022-31989 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=. | ||
| CVE-2022-32002 | Cri | 0.64 | 9.8 | 0.01 | Jun 2, 2022 | Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/courts/manage_court.php?id=. | ||
| CVE-2022-31978 | Cri | 0.64 | 9.8 | 0.07 | Jun 2, 2022 | Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_inquiry. | ||
| CVE-2022-31977 | Cri | 0.64 | 9.8 | 0.07 | Jun 2, 2022 | Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_team. | ||
| CVE-2022-31976 | Cri | 0.64 | 9.8 | 0.07 | Jun 2, 2022 | Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_request. |
- risk 0.64cvss 9.8epss 0.01
Hospital's Patient Records Management System v1.0 is vulnerable to SQL Injection via /hprms/classes/Master.php?f=delete_patient_admission.
- risk 0.64cvss 9.8epss 0.01
Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/view_menu.php?id=.
- risk 0.64cvss 9.8epss 0.02
The South Gate Inn Online Reservation System v1.0 contains an SQL injection vulnerability that can be chained with a malicious PHP file upload, which is caused by improper file handling in the editImg function. This vulnerability leads to remote code execution.
- risk 0.64cvss 9.8epss 0.01
Church Management System version 1.0 is affected by a SQL anjection vulnerability through creating a user with a PHP file as an avatar image, which is accessible through the /uploads directory. This can lead to RCE on the web server by uploading a PHP webshell.
- risk 0.64cvss 9.8epss 0.09
The Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users
- risk 0.64cvss 9.8epss 0.01
dynamicMarkt <= 3.10 is affected by SQL injection in the kat parameter of index.php.
- risk 0.64cvss 9.8epss 0.01
dynamicMarkt <= 3.10 is affected by SQL injection in the kat1 parameter of index.php.
- risk 0.64cvss 9.8epss 0.01
dynamicMarkt <= 3.10 is affected by SQL injection in the parent parameter of index.php.
- risk 0.64cvss 9.8epss 0.08
The WP Fundraising Donation and Crowdfunding Platform WordPress plugin before 1.5.0 does not sanitise and escape a parameter before using it in a SQL statement via one of it's REST route, leading to an SQL injection exploitable by unauthenticated users
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable "id" parameter.
- risk 0.64cvss 9.8epss 0.01
IBM InfoSphere Information Server 11.7 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
- risk 0.64cvss 9.8epss 0.01
BrowsBox CMS v4.0 was discovered to contain a SQL injection vulnerability.
- risk 0.64cvss 9.8epss 0.01
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/classes/Master.php?f=delete_service.
- risk 0.64cvss 9.8epss 0.01
Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_court.
- risk 0.64cvss 9.8epss 0.01
Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_product.
- risk 0.64cvss 9.8epss 0.01
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=.
- risk 0.64cvss 9.8epss 0.01
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/courts/manage_court.php?id=.
- risk 0.64cvss 9.8epss 0.07
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_inquiry.
- risk 0.64cvss 9.8epss 0.07
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_team.
- risk 0.64cvss 9.8epss 0.07
Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_request.