CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Description
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
Hierarchy (View 1000)
Related attack patterns (CAPEC)
CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7
CVEs mapped to this weakness (20,855)
page 164 of 1,043| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-14231 | Cri | 0.64 | 9.8 | 0.05 | Jul 21, 2019 | An issue was discovered in the Viral Quiz Maker - OnionBuzz plugin before 1.2.2 for WordPress. One could exploit the points parameter in the ob_get_results ajax nopriv handler due to there being no sanitization prior to use in a SQL query in getResultByPointsTrivia. This allows… | ||
| CVE-2019-14230 | Cri | 0.64 | 9.8 | 0.05 | Jul 21, 2019 | An issue was discovered in the Viral Quiz Maker - OnionBuzz plugin before 1.2.7 for WordPress. One could exploit the id parameter in the set_count ajax nopriv handler due to there being no sanitization prior to use in a SQL query in saveQuestionVote. This allows an… | ||
| CVE-2019-13569 | Cri | 0.64 | 9.8 | 0.04 | Jul 19, 2019 | A SQL injection vulnerability exists in the Icegram Email Subscribers & Newsletters plugin through 4.1.7 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system. | ||
| CVE-2019-12193 | — | Cri | 0.64 | 9.8 | 0.01 | Jul 19, 2019 | H3C H3Cloud OS all versions allows SQL injection via the ear/grid_event sidx parameter. | |
| CVE-2019-1010248 | Cri | 0.64 | 9.8 | 0.01 | Jul 18, 2019 | Synetics GmbH I-doit 1.12 and earlier is affected by: SQL Injection. The impact is: Unauthenticated mysql database access. The component is: Web login form. The attack vector is: An attacker can exploit the vulnerability by sending a malicious HTTP POST request. The fixed… | ||
| CVE-2019-1010104 | Cri | 0.64 | 9.8 | 0.02 | Jul 18, 2019 | TechyTalk Quick Chat WordPress Plugin All up to the latest is affected by: SQL Injection. The impact is: Access to the database. The component is: like_escape is used in Quick-chat.php line 399. The attack vector is: Crafted ajax request. | ||
| CVE-2019-13575 | Cri | 0.64 | 9.8 | 0.03 | Jul 18, 2019 | A SQL injection vulnerability exists in WPEverest Everest Forms plugin for WordPress through 1.4.9. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via includes/evf-entry-functions.php | ||
| CVE-2019-13447 | Cri | 0.64 | 9.8 | 0.02 | Jul 17, 2019 | An issue was discovered in Sertek Xpare 3.67. The login form does not sanitize input data. Because of this, a malicious agent could access the backend database via SQL injection. | ||
| CVE-2019-13573 | Cri | 0.64 | 9.8 | 0.04 | Jul 17, 2019 | A SQL injection vulnerability exists in the FolioVision FV Flowplayer Video Player plugin before 7.3.19.727 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system. | ||
| CVE-2019-13027 | Cri | 0.64 | 9.8 | 0.03 | Jul 12, 2019 | Realization Concerto Critical Chain Planner (aka CCPM) 5.10.8071 has SQL Injection in at least in the taskupdt/taskdetails.aspx webpage via the projectname parameter. | ||
| CVE-2019-13507 | Cri | 0.64 | 9.8 | 0.02 | Jul 11, 2019 | hidea.com AZ Admin 1.0 has news_det.php?cod= SQL Injection. | ||
| CVE-2019-12838 | Cri | 0.64 | 9.8 | 0.03 | Jul 11, 2019 | SchedMD Slurm 17.11.x, 18.08.0 through 18.08.7, and 19.05.0 allows SQL Injection. | ||
| CVE-2019-13489 | Cri | 0.64 | 9.8 | 0.01 | Jul 10, 2019 | Trape through 2019-05-08 has SQL injection via the data[2] variable in core/db.py, as demonstrated by the /bs t parameter. | ||
| CVE-2019-10653 | Cri | 0.64 | 9.8 | 0.01 | Jul 10, 2019 | An issue was discovered in Hsycms V1.1. There is a SQL injection vulnerability via a /news/*.html page. | ||
| CVE-2019-12723 | Cri | 0.64 | 9.8 | 0.02 | Jul 10, 2019 | An issue was discovered in the Teclib Fields plugin through 1.9.2 for GLPI. it allows SQL Injection via container_id and old_order parameters to ajax/reorder.php by an unauthenticated user. | ||
| CVE-2019-13413 | Cri | 0.64 | 9.8 | 0.02 | Jul 8, 2019 | The Rencontre plugin before 3.1.3 for WordPress allows SQL Injection via inc/rencontre_widget.php. | ||
| CVE-2019-13275 | Cri | 0.64 | 9.8 | 0.03 | Jul 4, 2019 | An issue was discovered in the VeronaLabs wp-statistics plugin before 12.6.7 for WordPress. The v1/hit endpoint of the API, when the non-default "use cache plugin" setting is enabled, is vulnerable to unauthenticated blind SQL Injection. | ||
| CVE-2019-12850 | Cri | 0.64 | 9.8 | 0.02 | Jul 3, 2019 | A query injection was possible in JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49168. | ||
| CVE-2017-18346 | Cri | 0.64 | 9.8 | 0.02 | Jul 3, 2019 | SQL injection vulnerability in /wbg/core/_includes/authorization.inc.php in CMS Web-Gooroo through 2013-01-19 allows remote attackers to execute arbitrary SQL commands via the wbg_login parameter. | ||
| CVE-2019-12960 | Cri | 0.64 | 9.8 | 0.01 | Jun 25, 2019 | LiveZilla Server before 8.0.1.1 is vulnerable to SQL Injection in functions.internal.build.inc.php via the parameter p_dt_s_d. |
- risk 0.64cvss 9.8epss 0.05
An issue was discovered in the Viral Quiz Maker - OnionBuzz plugin before 1.2.2 for WordPress. One could exploit the points parameter in the ob_get_results ajax nopriv handler due to there being no sanitization prior to use in a SQL query in getResultByPointsTrivia. This allows…
- risk 0.64cvss 9.8epss 0.05
An issue was discovered in the Viral Quiz Maker - OnionBuzz plugin before 1.2.7 for WordPress. One could exploit the id parameter in the set_count ajax nopriv handler due to there being no sanitization prior to use in a SQL query in saveQuestionVote. This allows an…
- risk 0.64cvss 9.8epss 0.04
A SQL injection vulnerability exists in the Icegram Email Subscribers & Newsletters plugin through 4.1.7 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system.
- risk 0.64cvss 9.8epss 0.01
H3C H3Cloud OS all versions allows SQL injection via the ear/grid_event sidx parameter.
- risk 0.64cvss 9.8epss 0.01
Synetics GmbH I-doit 1.12 and earlier is affected by: SQL Injection. The impact is: Unauthenticated mysql database access. The component is: Web login form. The attack vector is: An attacker can exploit the vulnerability by sending a malicious HTTP POST request. The fixed…
- risk 0.64cvss 9.8epss 0.02
TechyTalk Quick Chat WordPress Plugin All up to the latest is affected by: SQL Injection. The impact is: Access to the database. The component is: like_escape is used in Quick-chat.php line 399. The attack vector is: Crafted ajax request.
- risk 0.64cvss 9.8epss 0.03
A SQL injection vulnerability exists in WPEverest Everest Forms plugin for WordPress through 1.4.9. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system via includes/evf-entry-functions.php
- risk 0.64cvss 9.8epss 0.02
An issue was discovered in Sertek Xpare 3.67. The login form does not sanitize input data. Because of this, a malicious agent could access the backend database via SQL injection.
- risk 0.64cvss 9.8epss 0.04
A SQL injection vulnerability exists in the FolioVision FV Flowplayer Video Player plugin before 7.3.19.727 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQL commands on the affected system.
- risk 0.64cvss 9.8epss 0.03
Realization Concerto Critical Chain Planner (aka CCPM) 5.10.8071 has SQL Injection in at least in the taskupdt/taskdetails.aspx webpage via the projectname parameter.
- risk 0.64cvss 9.8epss 0.02
hidea.com AZ Admin 1.0 has news_det.php?cod= SQL Injection.
- risk 0.64cvss 9.8epss 0.03
SchedMD Slurm 17.11.x, 18.08.0 through 18.08.7, and 19.05.0 allows SQL Injection.
- risk 0.64cvss 9.8epss 0.01
Trape through 2019-05-08 has SQL injection via the data[2] variable in core/db.py, as demonstrated by the /bs t parameter.
- risk 0.64cvss 9.8epss 0.01
An issue was discovered in Hsycms V1.1. There is a SQL injection vulnerability via a /news/*.html page.
- risk 0.64cvss 9.8epss 0.02
An issue was discovered in the Teclib Fields plugin through 1.9.2 for GLPI. it allows SQL Injection via container_id and old_order parameters to ajax/reorder.php by an unauthenticated user.
- risk 0.64cvss 9.8epss 0.02
The Rencontre plugin before 3.1.3 for WordPress allows SQL Injection via inc/rencontre_widget.php.
- risk 0.64cvss 9.8epss 0.03
An issue was discovered in the VeronaLabs wp-statistics plugin before 12.6.7 for WordPress. The v1/hit endpoint of the API, when the non-default "use cache plugin" setting is enabled, is vulnerable to unauthenticated blind SQL Injection.
- risk 0.64cvss 9.8epss 0.02
A query injection was possible in JetBrains YouTrack. The issue was fixed in YouTrack 2018.4.49168.
- risk 0.64cvss 9.8epss 0.02
SQL injection vulnerability in /wbg/core/_includes/authorization.inc.php in CMS Web-Gooroo through 2013-01-19 allows remote attackers to execute arbitrary SQL commands via the wbg_login parameter.
- risk 0.64cvss 9.8epss 0.01
LiveZilla Server before 8.0.1.1 is vulnerable to SQL Injection in functions.internal.build.inc.php via the parameter p_dt_s_d.