CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Description
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7
CVEs mapped to this weakness (20,855)
page 154 of 1,043| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-15539 | Cri | 0.64 | 9.8 | 0.02 | Jul 5, 2020 | SQL injection can occur in We-com Municipality portal CMS 2.1.x via the cerca/ keywords field. | ||
| CVE-2020-13380 | Cri | 0.64 | 9.8 | 0.02 | Jul 1, 2020 | openSIS before 7.4 allows SQL Injection. | ||
| CVE-2020-14068 | Cri | 0.64 | 9.8 | 0.01 | Jun 29, 2020 | An issue was discovered in MK-AUTH 19.01. The web login functionality allows an attacker to bypass authentication and gain client privileges via SQL injection in central/executar_login.php. | ||
| CVE-2020-14972 | Cri | 0.64 | 9.8 | 0.06 | Jun 22, 2020 | Multiple SQL injection vulnerabilities in Sourcecodester Pisay Online E-Learning System 1.0 allow remote unauthenticated attackers to bypass authentication and achieve Remote Code Execution (RCE) via the user_email, user_pass, and id parameters on the admin login-portal and the… | ||
| CVE-2017-18888 | Cri | 0.64 | 9.8 | 0.01 | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows SQL injection during the fetching of multiple posts. | ||
| CVE-2020-7500 | Cri | 0.64 | 9.8 | 0.02 | Jun 16, 2020 | A CWE-89:Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability exists in U.motion Servers and Touch Panels (affected versions listed in the security notification) which could cause arbitrary code to be executed when a malicious… | ||
| CVE-2020-14054 | Cri | 0.64 | 9.8 | 0.01 | Jun 15, 2020 | SOKKIA GNR5 Vanguard WEB version 1.2 (build: 91f2b2c3a04d203d79862f87e2440cb7cefc3cd3) and hardware version 212 allows remote attackers to bypass admin authentication via a SQL injection attack that uses the User Name or Password field on the login page. | ||
| CVE-2014-8941 | Cri | 0.64 | 9.8 | 0.01 | Jun 1, 2020 | Lexiglot through 2014-11-20 allows SQL injection via an admin.php?page=users&from_id= or admin.php?page=history&limit= URI. | ||
| CVE-2020-13433 | Cri | 0.64 | 9.8 | 0.01 | May 24, 2020 | Jason2605 AdminPanel 4.0 allows SQL Injection via the editPlayer.php hidden parameter. | ||
| CVE-2020-12766 | Cri | 0.64 | 9.8 | 0.01 | May 9, 2020 | Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter. | ||
| CVE-2020-6010 | Hig | 0.64 | 8.8 | 0.49 | Apr 30, 2020 | LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection | ||
| CVE-2020-11942 | Cri | 0.64 | 9.8 | 0.01 | Apr 29, 2020 | An issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections. | ||
| CVE-2020-12442 | Cri | 0.64 | 9.8 | 0.02 | Apr 28, 2020 | Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250. | ||
| CVE-2020-12429 | Cri | 0.64 | 9.8 | 0.03 | Apr 28, 2020 | Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the login pages: admin/change-password.php, admin/check_availability.php, admin/index.php, change-password.php, check_availability.php,… | ||
| CVE-2019-20730 | Cri | 0.64 | 9.8 | 0.01 | Apr 16, 2020 | Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39,… | ||
| CVE-2020-11820 | Cri | 0.64 | 9.8 | 0.02 | Apr 16, 2020 | Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the entities_id parameter. | ||
| CVE-2020-11816 | Cri | 0.64 | 9.8 | 0.02 | Apr 16, 2020 | Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the reports_id (POST) parameter. | ||
| CVE-2020-11812 | Cri | 0.64 | 9.8 | 0.02 | Apr 16, 2020 | Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the filters[0][value] or filters[1][value] parameter. | ||
| CVE-2020-11537 | Cri | 0.64 | 9.8 | 0.01 | Apr 15, 2020 | A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API. | ||
| CVE-2020-10505 | Cri | 0.64 | 9.8 | 0.01 | Apr 15, 2020 | The School Manage System before 2020, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of SQL Injection, an attacker can use a union based injection query string to get databases schema and username/password. |
- risk 0.64cvss 9.8epss 0.02
SQL injection can occur in We-com Municipality portal CMS 2.1.x via the cerca/ keywords field.
- risk 0.64cvss 9.8epss 0.02
openSIS before 7.4 allows SQL Injection.
- risk 0.64cvss 9.8epss 0.01
An issue was discovered in MK-AUTH 19.01. The web login functionality allows an attacker to bypass authentication and gain client privileges via SQL injection in central/executar_login.php.
- risk 0.64cvss 9.8epss 0.06
Multiple SQL injection vulnerabilities in Sourcecodester Pisay Online E-Learning System 1.0 allow remote unauthenticated attackers to bypass authentication and achieve Remote Code Execution (RCE) via the user_email, user_pass, and id parameters on the admin login-portal and the…
- risk 0.64cvss 9.8epss 0.01
An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows SQL injection during the fetching of multiple posts.
- risk 0.64cvss 9.8epss 0.02
A CWE-89:Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability exists in U.motion Servers and Touch Panels (affected versions listed in the security notification) which could cause arbitrary code to be executed when a malicious…
- risk 0.64cvss 9.8epss 0.01
SOKKIA GNR5 Vanguard WEB version 1.2 (build: 91f2b2c3a04d203d79862f87e2440cb7cefc3cd3) and hardware version 212 allows remote attackers to bypass admin authentication via a SQL injection attack that uses the User Name or Password field on the login page.
- risk 0.64cvss 9.8epss 0.01
Lexiglot through 2014-11-20 allows SQL injection via an admin.php?page=users&from_id= or admin.php?page=history&limit= URI.
- risk 0.64cvss 9.8epss 0.01
Jason2605 AdminPanel 4.0 allows SQL Injection via the editPlayer.php hidden parameter.
- risk 0.64cvss 9.8epss 0.01
Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.
- risk 0.64cvss 8.8epss 0.49
LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection
- risk 0.64cvss 9.8epss 0.01
An issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections.
- risk 0.64cvss 9.8epss 0.02
Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.
- risk 0.64cvss 9.8epss 0.03
Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the login pages: admin/change-password.php, admin/check_availability.php, admin/index.php, change-password.php, check_availability.php,…
- risk 0.64cvss 9.8epss 0.01
Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39,…
- risk 0.64cvss 9.8epss 0.02
Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the entities_id parameter.
- risk 0.64cvss 9.8epss 0.02
Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the reports_id (POST) parameter.
- risk 0.64cvss 9.8epss 0.02
Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the filters[0][value] or filters[1][value] parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API.
- risk 0.64cvss 9.8epss 0.01
The School Manage System before 2020, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of SQL Injection, an attacker can use a union based injection query string to get databases schema and username/password.