VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 156 of 1,043
  • CVE-2018-16357CriMar 2, 2020
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in PbootCMS. There is a SQL injection via the api.php/Cms/search order parameter.

  • CVE-2018-16356CriMar 2, 2020
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in PbootCMS. There is a SQL injection via the api.php/List/index order parameter.

  • CVE-2019-19608CriMar 2, 2020
    risk 0.64cvss 9.8epss 0.02

    A SQL injection vulnerability in in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attack due to insufficient input validation for the registeredList.cgi page. A successful exploit could allow an attacker to extract sensitive…

  • CVE-2019-19607CriMar 2, 2020
    risk 0.64cvss 9.8epss 0.02

    A SQL injection vulnerability in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attack due to insufficient input validation for the session parameter. A successful exploit could allow an attacker to extract sensitive…

  • CVE-2020-9398CriFeb 25, 2020
    risk 0.64cvss 9.8epss 0.01

    ISPConfig before 3.1.15p3, when the undocumented reverse_proxy_panel_allowed=sites option is manually enabled, allows SQL Injection.

  • CVE-2013-2018CriFeb 20, 2020
    risk 0.64cvss 9.8epss 0.02

    Multiple SQL injection vulnerabilities in BOINC allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2014-8089CriFeb 17, 2020
    risk 0.64cvss 9.8epss 0.03

    SQL injection vulnerability in Zend Framework before 1.12.9, 2.2.x before 2.2.8, and 2.3.x before 2.3.3, when using the sqlsrv PHP extension, allows remote attackers to execute arbitrary SQL commands via a null byte.

  • CVE-2020-9006CriFeb 17, 2020
    risk 0.64cvss 9.8epss 0.09

    The Popup Builder plugin 2.2.8 through 2.6.7.6 for WordPress is vulnerable to SQL injection (in the sgImportPopups function in sg_popup_ajax.php) via PHP Deserialization on attacker-controlled data with the attachmentUrl POST variable. This allows creation of an arbitrary…

  • CVE-2020-8427CriFeb 17, 2020
    risk 0.64cvss 9.8epss 0.02

    In Unitrends Backup before 10.4.1, an HTTP request parameter was not properly sanitized, allowing for SQL injection that resulted in an authentication bypass.

  • CVE-2013-1401CriFeb 13, 2020
    risk 0.64cvss 9.8epss 0.05

    Multiple security bypass vulnerabilities in the editAnswer, deleteAnswer, addAnswer, and deletePoll functions in WordPress Poll Plugin 34.5 for WordPress allow a remote attacker to add, edit, and delete an answer and delete a poll.

  • CVE-2013-1400CriFeb 13, 2020
    risk 0.64cvss 9.8epss 0.03

    Multiple SQL injection vulnerabilities in CWPPoll.js in WordPress Poll Plugin 34.5 for WordPress allow attackers to execute arbitrary SQL commands via the pollid or poll_id parameter in a viewPollResults or userlogs action.

  • CVE-2020-8802CriFeb 13, 2020
    risk 0.64cvss 9.8epss 0.03

    SuiteCRM through 7.11.11 has Incorrect Access Control via action_saveHTMLField Bean Manipulation.

  • CVE-2015-5617CriFeb 12, 2020
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in pub/m_pending_news/delete_pending_news.jsp in Enorth Webpublisher CMS allows remote attackers to execute arbitrary SQL commands via the cbNewsId parameter.

  • CVE-2020-3934CriFeb 11, 2020
    risk 0.64cvss 9.8epss 0.01

    TAIWAN SECOM CO., LTD., a Door Access Control and Personnel Attendance Management system, contains a vulnerability of Pre-auth SQL Injection, allowing attackers to inject a specific SQL command.

  • CVE-2020-8645CriFeb 7, 2020
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Simplejobscript.com SJS through 1.66. There is an unauthenticated SQL injection via the job applications search function. The vulnerable parameter is job_id. The function is getJobApplicationsByJobId(). The file is _lib/class.JobApplication.php.

  • CVE-2019-20447CriFeb 5, 2020
    risk 0.64cvss 9.8epss 0.02

    Jobberbase 2.0 has SQL injection via the PATH_INFO to the jobs-in endpoint.

  • CVE-2020-8592CriFeb 3, 2020
    risk 0.64cvss 9.8epss 0.01

    eG Manager 7.1.2 allows SQL Injection via the user parameter to com.eg.LoginHelperServlet (aka the Forgot Password feature).

  • CVE-2014-3719CriJan 30, 2020
    risk 0.64cvss 9.8epss 0.02

    Multiple SQL injection vulnerabilities in cgi-bin/review_m.cgi in Ex Libris ALEPH 500 (Integrated library management system) 18.1 and 20 allow remote attackers to execute arbitrary SQL commands via the (1) find, (2) lib, or (3) sid parameter.

  • CVE-2014-1925CriJan 24, 2020
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in the MARC framework import/export function (admin/import_export_framework.pl) in Koha before 3.8.23, 3.10.x before 3.10.13, 3.12.x before 3.12.10, and 3.14.x before 3.14.3 allows remote authenticated users to execute arbitrary SQL commands via…

  • CVE-2014-1924CriJan 24, 2020
    risk 0.64cvss 9.8epss 0.02

    The MARC framework import/export function (admin/import_export_framework.pl) in Koha before 3.8.23, 3.10.x before 3.10.13, 3.12.x before 3.12.10, and 3.14.x before 3.14.3 does not require authentication, which allows remote attackers to conduct SQL injection attacks via…