VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 140 of 1,043
  • CVE-2020-28960CriOct 22, 2021
    risk 0.64cvss 9.8epss 0.02

    Chichen Tech CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the file product_list.php via the id and cid parameters.

  • CVE-2021-42169CriOct 22, 2021
    risk 0.64cvss 9.8epss 0.03

    The Simple Payroll System with Dynamic Tax Bracket in PHP using SQLite Free Source Code (by: oretnom23 ) is vulnerable from remote SQL-Injection-Bypass-Authentication for the admin account. The parameter (username) from the login form is not protected correctly and there is no…

  • CVE-2021-42369CriOct 14, 2021
    risk 0.64cvss 9.9epss 0.01

    Imagicle Application Suite (for Cisco UC) before 2021.Summer.2 allows SQL injection. A low-privileged user could inject a SQL statement through the "Export to CSV" feature of the Contact Manager web GUI.

  • CVE-2021-41075CriOct 13, 2021
    risk 0.64cvss 9.8epss 0.03

    The NetFlow Analyzer in Zoho ManageEngine OpManger before 125455 is vulnerable to SQL Injection in the Attacks Module API.

  • CVE-2021-42224CriOct 13, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL Injection vulnerability exists in IFSC Code Finder Project 1.0 via the searchifsccode POST parameter in /search.php.

  • CVE-2021-40842CriOct 13, 2021
    risk 0.64cvss 9.8epss 0.01

    Proofpoint Insider Threat Management Server contains a SQL injection vulnerability in the Web Console. The vulnerability exists due to improper input validation on the database name parameter required in certain unauthenticated APIs. A malicious URL visited by anyone with…

  • CVE-2021-40618CriOct 12, 2021
    risk 0.64cvss 9.8epss 0.01

    An SQL Injection vulnerability exists in openSIS Classic 8.0 via the 1) ADDR_CONT_USRN, 2) ADDR_CONT_PSWD, 3) SECN_CONT_USRN or 4) SECN_CONT_PSWD parameters in HoldAddressFields.php.

  • CVE-2021-40543CriOct 11, 2021
    risk 0.64cvss 9.8epss 0.01

    Opensis-Classic Version 8.0 is affected by a SQL injection vulnerability due to a lack of sanitization of input data at two parameters $_GET['usrid'] and $_GET['prof_id'] in the PasswordCheck.php file.

  • CVE-2020-21726CriOct 7, 2021
    risk 0.64cvss 9.8epss 0.01

    OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the cid parameter.

  • CVE-2020-21725CriOct 7, 2021
    risk 0.64cvss 9.8epss 0.01

    OpenSNS v6.1.0 contains a blind SQL injection vulnerability in /Controller/ChinaCityController.class.php via the pid parameter.

  • CVE-2021-29903CriOct 6, 2021
    risk 0.64cvss 9.8epss 0.01

    IBM Sterling B2B Integrator Standard Edition 5.2.6.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID:…

  • CVE-2021-29798CriOct 6, 2021
    risk 0.64cvss 9.8epss 0.01

    IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID:…

  • CVE-2021-41511CriOct 4, 2021
    risk 0.64cvss 9.8epss 0.03

    The username and password field of login in Lodging Reservation Management System V1 can give access to any user by using SQL injection to bypass authentication.

  • CVE-2020-21012CriOct 1, 2021
    risk 0.64cvss 9.8epss 0.04

    Sourcecodester Hotel and Lodge Management System 2.0 is vulnerable to unauthenticated SQL injection and can allow remote attackers to execute arbitrary SQL commands via the email parameter to the edit page for Customer, Room, Currency, Room Booking Details, or Tax Details.

  • CVE-2020-20797CriSep 30, 2021
    risk 0.64cvss 9.8epss 0.01

    FlameCMS 3.3.5 contains a time-based blind SQL injection vulnerability in /account/register.php.

  • CVE-2020-20796CriSep 30, 2021
    risk 0.64cvss 9.8epss 0.01

    FlameCMS 3.3.5 contains a SQL injection vulnerability in /master/article.php via the "Id" parameter.

  • CVE-2020-20122CriSep 28, 2021
    risk 0.64cvss 9.8epss 0.01

    Wuzhi CMS v4.1 contains a SQL injection vulnerability in the checktitle() function in /coreframe/app/content/admin/content.php.

  • CVE-2020-20120CriSep 28, 2021
    risk 0.64cvss 9.8epss 0.02

    ThinkPHP v3.2.3 and below contains a SQL injection vulnerability which is triggered when the array is not passed to the "where" and "query" methods.

  • CVE-2021-38303CriSep 28, 2021
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability exists in Sureline SUREedge Migrator 7.0.7.29360.

  • CVE-2021-24666CriSep 27, 2021
    risk 0.64cvss 9.8epss 0.09

    The Podlove Podcast Publisher WordPress plugin before 3.5.6 contains a 'Social & Donations' module (not activated by default), which adds the rest route '/services/contributor/(?P[\d]+), takes an 'id' and 'category' parameters as arguments. Both parameters can be used for…