VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,856)

page 220 of 1,043
  • CVE-2024-28891HigMar 21, 2024
    risk 0.58cvss 8.8epss 0.08

    SQL injection vulnerability exists in the script Handler_CFG.ashx.

  • CVE-2024-25937HigMar 21, 2024
    risk 0.58cvss 8.8epss 0.08

    SQL injection vulnerability exists in the script DIAE_tagHandler.ashx.

  • CVE-2024-27889HigMar 4, 2024
    risk 0.58cvss 8.8epss 0.09

    Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying…

  • CVE-2024-27298CriMar 1, 2024
    risk 0.58cvss 10.0epss 0.01

    parse-server is a Parse Server for Node.js / Express. This vulnerability allows SQL injection when Parse Server is configured to use the PostgreSQL database. The vulnerability has been fixed in 6.5.0 and 7.0.0-alpha.20.

  • CVE-2024-1597CriFeb 19, 2024
    risk 0.58cvss 10.0epss 0.05

    pgjdbc, the PostgreSQL JDBC Driver, allows attacker to inject SQL if using PreferQueryMode=SIMPLE. Note this is not the default. In the default mode there is no vulnerability. A placeholder for a numeric value must be immediately preceded by a minus. There must be a second…

  • CVE-2023-39336HigJan 9, 2024
    risk 0.58cvss 8.8epss 0.10

    An unspecified SQL Injection vulnerability in Ivanti Endpoint Manager released prior to 2022 SU 5 allows an attacker with access to the internal network to execute arbitrary SQL queries and retrieve output without the need for authentication. Under specific circumstances, this…

  • CVE-2023-50071HigDec 29, 2023
    risk 0.58cvss 8.8epss 0.14

    Sourcecodester Customer Support System 1.0 has multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_department via id or name.

  • CVE-2023-5674HigDec 26, 2023
    risk 0.58cvss 8.8epss 0.11

    The WP Mail Log WordPress plugin before 1.1.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as Contributor.

  • CVE-2023-51448HigDec 22, 2023
    risk 0.58cvss 8.8epss 0.67

    Cacti provides an operational monitoring and fault management framework. Version 1.2.25 has a Blind SQL Injection (SQLi) vulnerability within the SNMP Notification Receivers feature in the file `‘managers.php’`. An authenticated attacker with the “Settings/Utilities”…

  • CVE-2023-6063HigDec 4, 2023
    risk 0.58cvss 7.5epss 0.74

    The WP Fastest Cache WordPress plugin before 1.2.2 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.

  • CVE-2023-3983HigJul 31, 2023
    risk 0.58cvss 8.8epss 0.17

    An authenticated SQL injection vulnerability exists in Advantech iView versions prior to v5.7.4 build 6752. An authenticated remote attacker can bypass checks in com.imc.iview.utils.CUtils.checkSQLInjection() to perform blind SQL injection.

  • CVE-2023-34133HigJul 13, 2023
    risk 0.58cvss 7.5epss 0.73

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SonicWall GMS and Analytics allows an unauthenticated attacker to extract sensitive information from the application database. This issue affects GMS: 9.3.2-SP1 and earlier…

  • CVE-2022-36973HigMar 29, 2023
    risk 0.58cvss 8.8epss 0.06

    This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within…

  • CVE-2023-0630HigMar 20, 2023
    risk 0.58cvss 8.8epss 0.05

    The Slimstat Analytics WordPress plugin before 4.9.3.3 does not prevent subscribers from rendering shortcodes that concatenates attributes directly into an SQL query.

  • CVE-2023-26037HigFeb 25, 2023
    risk 0.58cvss 8.9epss 0.01

    ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and Analog cameras. Versions prior to 1.36.33 and 1.37.33 contain an SQL Injection. The minTime and maxTime request parameters are not properly validated and could…

  • CVE-2023-26032HigFeb 25, 2023
    risk 0.58cvss 8.9epss 0.01

    ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and Analog cameras. Versions prior to 1.36.33 and 1.37.33 contain SQL Injection via malicious jason web token. The Username field of the JWT token was trusted when…

  • CVE-2023-25813CriFeb 22, 2023
    risk 0.58cvss 10.0epss 0.01

    Sequelize is a Node.js ORM tool. In versions prior to 6.19.1 a SQL injection exploit exists related to replacements. Parameters which are passed through replacements are not properly escaped which can lead to arbitrary SQL injection depending on the specific queries in use. The…

  • CVE-2022-47745HigJan 19, 2023
    risk 0.58cvss 8.8epss 0.15

    ZenTao 16.4 to 18.0.beta1 is vulnerable to SQL injection. After logging in with any user, you can complete SQL injection by constructing a special request and sending it to function importNotice.

  • CVE-2023-22959HigJan 11, 2023
    risk 0.58cvss 8.8epss 0.14

    WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName).

  • CVE-2022-34324HigJan 1, 2023
    risk 0.58cvss 8.8epss 0.12

    Multiple SQL injections in Sage XRT Business Exchange 12.4.302 allow an authenticated attacker to inject malicious data in SQL queries: Add Currencies, Payment Order, and Transfer History.