VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 172 of 1,043
  • CVE-2018-12470CriOct 4, 2018
    risk 0.64cvss 9.8epss 0.02

    A SQL Injection in the RegistrationSharing module of SUSE Linux SMT allows remote attackers to cause execute arbitrary SQL statements. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.

  • CVE-2018-17852CriOct 1, 2018
    risk 0.64cvss 9.8epss 0.02

    A SQL injection was discovered in WUZHI CMS 4.1.0 in coreframe/app/coupon/admin/card.php via the groupname parameter to the /index.php?m=coupon&f=card&v=detail_listing URI.

  • CVE-2018-17831CriOct 1, 2018
    risk 0.64cvss 9.8epss 0.02

    In REDAXO before 5.6.3, a critical SQL injection vulnerability has been discovered in the rex_list class because of the prepareQuery function in core/lib/list.php, via the index.php?page=users/users sort parameter. Endangered was the backend and the frontend only if rex_list…

  • CVE-2018-17796CriSep 30, 2018
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in MRCMS (aka mushroom) through 3.1.2. The WebParam.java file directly accepts the FIELD_T parameter in a request and uses it as a hash of SQL statements without filtering, resulting in a SQL injection vulnerability in getChannel() in the…

  • CVE-2018-17575CriSep 28, 2018
    risk 0.64cvss 9.8epss 0.01

    SWA SWA.JACAD 3.1.37 Build 024 has SQL Injection via the /academico/aluno/esqueci-minha-senha/ studentId parameter.

  • CVE-2018-14956CriSep 28, 2018
    risk 0.64cvss 9.8epss 0.03

    CMS ISWEB 3.5.3 is vulnerable to multiple SQL injection flaws. An attacker can inject malicious queries into the application and obtain sensitive information.

  • CVE-2018-17566CriSep 26, 2018
    risk 0.64cvss 9.8epss 0.02

    In ThinkPHP 5.1.24, the inner function delete can be used for SQL injection when its WHERE condition's value can be controlled by a user's request.

  • CVE-2018-17410CriSep 26, 2018
    risk 0.64cvss 9.8epss 0.02

    Horus CMS allows SQL Injection, as demonstrated by a request to the /busca or /home URI.

  • CVE-2015-8298CriSep 24, 2018
    risk 0.64cvss 9.8epss 0.03

    Multiple SQL injection vulnerabilities in the login page in RXTEC RXAdmin UPDATE 06 / 2012 allow remote attackers to execute arbitrary SQL commands via the (1) loginpassword, (2) loginusername, (3) zusatzlicher, or (4) groupid parameter to index.htm, or the (5) rxtec cookie to…

  • CVE-2018-16822CriSep 21, 2018
    risk 0.64cvss 9.8epss 0.01

    SeaCMS 6.64 allows SQL Injection via the upload/admin/admin_video.php order parameter.

  • CVE-2018-17232CriSep 20, 2018
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in archivebot.py in docmarionum1 Slack ArchiveBot (aka slack-archive-bot) before 2018-09-19 allows remote attackers to execute arbitrary SQL commands via the text parameter to cursor.execute().

  • CVE-2018-17136CriSep 17, 2018
    risk 0.64cvss 9.8epss 0.01

    zzcms 8.3 contains a SQL Injection vulnerability in /user/check.php via a Client-Ip HTTP header.

  • CVE-2018-17110CriSep 17, 2018
    risk 0.64cvss 9.8epss 0.02

    Simple POS 4.0.24 allows SQL Injection via a products/get_products/ columns[0][search][value] parameter in the management panel, as demonstrated by products/get_products/1.

  • CVE-2018-17035CriSep 14, 2018
    risk 0.64cvss 9.8epss 0.01

    UCMS 1.4.6 has SQL injection during installation via the install/index.php mysql_dbname parameter.

  • CVE-2018-16762CriSep 9, 2018
    risk 0.64cvss 9.8epss 0.01

    FUEL CMS 1.4.1 allows SQL Injection via the layout, published, or search_term parameter to pages/items.

  • CVE-2018-16724CriSep 8, 2018
    risk 0.64cvss 9.8epss 0.01

    An issue is discovered in baijiacms V4. Blind SQL Injection exists via the order parameter in an index.php?act=index request.

  • CVE-2018-16445CriSep 4, 2018
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in SeaCMS through 6.61. SQL injection exists via the tid parameter in an adm1n/admin_topic_vod.php request.

  • CVE-2018-16432CriSep 4, 2018
    risk 0.64cvss 9.8epss 0.01

    BlueCMS 1.6 allows SQL Injection via the user_name parameter to uploads/user.php?act=index_login.

  • CVE-2018-16385CriSep 3, 2018
    risk 0.64cvss 9.8epss 0.02

    ThinkPHP before 5.1.23 allows SQL Injection via the public/index/index/test/index query string.

  • CVE-2018-16354CriSep 2, 2018
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in FHCRM through 2018-02-11. There is a SQL injection via the index.php/User/read limit parameter.