VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,856)

page 257 of 1,043
  • CVE-2021-38819HigNov 17, 2022
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability exits on the Simple Image Gallery System 1.0 application through "id" parameter on the album page.

  • CVE-2020-12507HigNov 15, 2022
    risk 0.57cvss 8.8epss 0.01

    In s::can moni::tools before version 4.2 an authenticated attacker could get full access to the database through SQL injection. This may result in loss of confidentiality, loss of integrity and DoS.

  • CVE-2022-42120CriNov 15, 2022
    risk 0.57cvss 9.8epss 0.01

    A SQL injection vulnerability in the Fragment module in Liferay Portal 7.3.3 through 7.4.3.16, and Liferay DXP 7.3 before update 4, and 7.4 before update 17 allows attackers to execute arbitrary SQL commands via a PortletPreferences' `namespace` attribute.

  • CVE-2022-43288HigNov 14, 2022
    risk 0.57cvss 8.8epss 0.01

    Rukovoditel v3.2.1 was discovered to contain a SQL injection vulnerability via the order_by parameter at /rukovoditel/index.php?module=logs/view&type=php.

  • CVE-2022-43318HigNov 7, 2022
    risk 0.57cvss 8.8epss 0.01

    Human Resource Management System v1.0 was discovered to contain a SQL injection vulnerability via the stateedit parameter at /hrm/state.php.

  • CVE-2022-3494HigNov 7, 2022
    risk 0.57cvss 8.8epss 0.01

    The Complianz WordPress plugin before 6.3.4, and Complianz Premium WordPress plugin before 6.3.6 allow a translators to inject arbitrary SQL through an unsanitized translation. SQL can be injected through an infected translation file, or by a user with a translator role through…

  • CVE-2022-43226HigNov 2, 2022
    risk 0.57cvss 8.8epss 0.01

    Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/?page=appointments/view_appointment.

  • CVE-2021-35387HigOct 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Hospital Management System v 4.0 is vulnerable to SQL Injection via file:hospital/hms/admin/view-patient.php.

  • CVE-2022-37202HigOct 26, 2022
    risk 0.57cvss 8.8epss 0.01

    JFinal CMS 5.1.0 is vulnerable to SQL Injection via /admin/advicefeedback/list

  • CVE-2022-3395HigOct 25, 2022
    risk 0.57cvss 8.8epss 0.01

    The WP All Export Pro WordPress plugin before 1.7.9 uses the contents of the cc_sql POST parameter directly as a database query, allowing users which has been given permission to run exports to execute arbitrary SQL statements, leading to a SQL Injection vulnerability. By…

  • CVE-2022-3246HigOct 25, 2022
    risk 0.57cvss 8.8epss 0.01

    The Blog2Social: Social Media Auto Post & Scheduler WordPress plugin before 6.9.10 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by any authenticated users, such as subscribers

  • CVE-2022-3158HigOct 17, 2022
    risk 0.57cvss 8.8epss 0.04

    Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an input validation vulnerability. The FactoryTalk VantagePoint SQL Server lacks input validation when users enter SQL statements to retrieve information from the back-end…

  • CVE-2022-37208HigOct 13, 2022
    risk 0.57cvss 8.8epss 0.01

    JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

  • CVE-2021-45788HigSep 29, 2022
    risk 0.57cvss 8.8epss 0.03

    Time-based SQL Injection vulnerabilities were found in Metersphere v1.15.4 via the "orders" parameter.

  • CVE-2020-35674CriSep 29, 2022
    risk 0.57cvss 9.8epss 0.01

    BigProf Online Invoicing System before 2.9 suffers from an unauthenticated SQL Injection found in /membership_passwordReset.php (the endpoint that is responsible for issuing self-service password resets). An unauthenticated attacker is able to send a request containing a crafted…

  • CVE-2022-37209HigSep 27, 2022
    risk 0.57cvss 8.8epss 0.02

    JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

  • CVE-2022-40404HigSep 26, 2022
    risk 0.57cvss 8.8epss 0.01

    Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/select.php.

  • CVE-2022-40402HigSep 26, 2022
    risk 0.57cvss 8.8epss 0.01

    Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the booking parameter at /admin/client_assign.php.

  • CVE-2022-32211HigSep 23, 2022
    risk 0.57cvss 8.8epss 0.01

    A SQL injection vulnerability exists in Rocket.Chat <v3.18.6, <v4.4.4 and <v4.7.3 which can allow an attacker to retrieve a reset password token through or a 2fa secret.

  • CVE-2022-23696HigSep 20, 2022
    risk 0.57cvss 8.8epss 0.01

    Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities to obtain and modify…