VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 148 of 1,043
  • CVE-2020-28657CriMar 2, 2021
    risk 0.64cvss 9.8epss 0.02

    In bPanel 2.0, the administrative ajax endpoints (aka ajax/aj_*.php) are accessible without authentication and allow SQL injections, which could lead to platform compromise.

  • CVE-2021-26904CriFeb 26, 2021
    risk 0.64cvss 9.8epss 0.02

    LMA ISIDA Retriever 5.2 allows SQL Injection.

  • CVE-2021-25779CriFeb 17, 2021
    risk 0.64cvss 9.8epss 0.01

    Baby Care System v1.0 is vulnerable to SQL injection via the 'id' parameter on the contentsectionpage.php page.

  • CVE-2021-22856CriFeb 17, 2021
    risk 0.64cvss 9.8epss 0.01

    The CGE property management system contains SQL Injection vulnerabilities. Remote attackers can inject SQL commands into the parameters in Cookie and obtain data in the database without privilege.

  • CVE-2020-24841CriFeb 16, 2021
    risk 0.64cvss 9.8epss 0.02

    PNPSCADA 2.200816204020 allows SQL injection via parameter 'interf' in /browse.jsp. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

  • CVE-2021-27234CriFeb 16, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. The web application suffers from SQL injection on Adminlog.asp, Archivemsgs.asp, Deletelog.asp, Eventlog.asp, and Evmlog.asp.

  • CVE-2021-26822CriFeb 15, 2021
    risk 0.64cvss 9.8epss 0.05

    Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in search-teacher.php. This vulnerability can be exploited by a remote unauthenticated attacker to leak sensitive information and perform code execution attacks.

  • CVE-2021-26201CriFeb 15, 2021
    risk 0.64cvss 9.8epss 0.02

    The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attacker can obtain access to the admin panel by injecting a SQL query in the username field of the login page.

  • CVE-2021-26200CriFeb 15, 2021
    risk 0.64cvss 9.8epss 0.02

    The user area for Library System 1.0 is vulnerable to SQL injection where a user can bypass the authentication and login as the admin user.

  • CVE-2020-16629CriFeb 8, 2021
    risk 0.64cvss 9.8epss 0.01

    PhpOK 5.4.137 contains a SQL injection vulnerability that can inject an attachment data through SQL, and then call the attachment replacement function through api.php to write a PHP file to the target path.

  • CVE-2020-26051CriFeb 8, 2021
    risk 0.64cvss 9.8epss 0.02

    College Management System Php 1.0 suffers from SQL injection vulnerabilities in the index.php page from POST parameters 'unametxt' and 'pwdtxt', which are not filtered before passing a SQL query.

  • CVE-2021-26754CriFeb 8, 2021
    risk 0.64cvss 9.8epss 0.05

    wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order[0][dir] SQL injection.

  • CVE-2020-18717CriFeb 5, 2021
    risk 0.64cvss 9.8epss 0.04

    SQL Injection in ZZZCMS zzzphp 1.7.1 allows remote attackers to execute arbitrary code due to a lack of parameter filtering in inc/zzz_template.php.

  • CVE-2020-18716CriFeb 5, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in wordAction.php.

  • CVE-2020-18714CriFeb 5, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in wordModel.php's getdata function.

  • CVE-2020-18713CriFeb 5, 2021
    risk 0.64cvss 9.8epss 0.02

    SQL Injection in Rockoa v1.8.7 allows remote attackers to gain privileges due to loose filtering of parameters in customerAction.php

  • CVE-2020-21180CriFeb 1, 2021
    risk 0.64cvss 9.8epss 0.01

    Sql injection vulnerability in koa2-blog 1.0.0 allows remote attackers to Injecting a malicious SQL statement via the name parameter to the signup page.

  • CVE-2020-21179CriFeb 1, 2021
    risk 0.64cvss 9.8epss 0.01

    Sql injection vulnerability in koa2-blog 1.0.0 allows remote attackers to Injecting a malicious SQL statement via the name parameter to the signin page.

  • CVE-2020-21176CriFeb 1, 2021
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in the model.increment and model.decrement function in ThinkJS 3.2.10 allows remote attackers to execute arbitrary SQL commands via the step parameter.

  • CVE-2020-20296CriFeb 1, 2021
    risk 0.64cvss 9.8epss 0.01

    An issue was found in CMSWing project version 1.3.8, Because the rechargeAction function does not check the balance parameter, malicious parameters can execute arbitrary SQL commands.