VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 154 of 1,043
  • CVE-2020-15539CriJul 5, 2020
    risk 0.64cvss 9.8epss 0.02

    SQL injection can occur in We-com Municipality portal CMS 2.1.x via the cerca/ keywords field.

  • CVE-2020-13380CriJul 1, 2020
    risk 0.64cvss 9.8epss 0.02

    openSIS before 7.4 allows SQL Injection.

  • CVE-2020-14068CriJun 29, 2020
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in MK-AUTH 19.01. The web login functionality allows an attacker to bypass authentication and gain client privileges via SQL injection in central/executar_login.php.

  • CVE-2020-14972CriJun 22, 2020
    risk 0.64cvss 9.8epss 0.06

    Multiple SQL injection vulnerabilities in Sourcecodester Pisay Online E-Learning System 1.0 allow remote unauthenticated attackers to bypass authentication and achieve Remote Code Execution (RCE) via the user_email, user_pass, and id parameters on the admin login-portal and the…

  • CVE-2017-18888CriJun 19, 2020
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows SQL injection during the fetching of multiple posts.

  • CVE-2020-7500CriJun 16, 2020
    risk 0.64cvss 9.8epss 0.02

    A CWE-89:Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability exists in U.motion Servers and Touch Panels (affected versions listed in the security notification) which could cause arbitrary code to be executed when a malicious…

  • CVE-2020-14054CriJun 15, 2020
    risk 0.64cvss 9.8epss 0.01

    SOKKIA GNR5 Vanguard WEB version 1.2 (build: 91f2b2c3a04d203d79862f87e2440cb7cefc3cd3) and hardware version 212 allows remote attackers to bypass admin authentication via a SQL injection attack that uses the User Name or Password field on the login page.

  • CVE-2014-8941CriJun 1, 2020
    risk 0.64cvss 9.8epss 0.01

    Lexiglot through 2014-11-20 allows SQL injection via an admin.php?page=users&from_id= or admin.php?page=history&limit= URI.

  • CVE-2020-13433CriMay 24, 2020
    risk 0.64cvss 9.8epss 0.01

    Jason2605 AdminPanel 4.0 allows SQL Injection via the editPlayer.php hidden parameter.

  • CVE-2020-12766CriMay 9, 2020
    risk 0.64cvss 9.8epss 0.01

    Gnuteca 3.8 allows action=main:search:simpleSearch SQL Injection via the exemplaryStatusId parameter.

  • CVE-2020-6010HigApr 30, 2020
    risk 0.64cvss 8.8epss 0.49

    LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection

  • CVE-2020-11942CriApr 29, 2020
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in Open-AudIT 3.2.2. There are Multiple SQL Injections.

  • CVE-2020-12442CriApr 28, 2020
    risk 0.64cvss 9.8epss 0.02

    Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.

  • CVE-2020-12429CriApr 28, 2020
    risk 0.64cvss 9.8epss 0.03

    Online Course Registration 2.0 has multiple SQL injections that would can lead to a complete database compromise and authentication bypass in the login pages: admin/change-password.php, admin/check_availability.php, admin/index.php, change-password.php, check_availability.php,…

  • CVE-2019-20730CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.01

    Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39,…

  • CVE-2020-11820CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the entities_id parameter.

  • CVE-2020-11816CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the reports_id (POST) parameter.

  • CVE-2020-11812CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.02

    Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the filters[0][value] or filters[1][value] parameter.

  • CVE-2020-11537CriApr 15, 2020
    risk 0.64cvss 9.8epss 0.01

    A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries via injection to DocID parameter of Websocket API.

  • CVE-2020-10505CriApr 15, 2020
    risk 0.64cvss 9.8epss 0.01

    The School Manage System before 2020, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of SQL Injection, an attacker can use a union based injection query string to get databases schema and username/password.