VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,856)

page 261 of 1,043
  • CVE-2021-26636HigJun 23, 2022
    risk 0.57cvss 8.8epss 0.01

    Stored XSS and SQL injection vulnerability in MaxBoard could lead to occur Remote Code Execution, which could lead to information exposure and privilege escalation.

  • CVE-2022-26669HigJun 20, 2022
    risk 0.57cvss 8.8epss 0.01

    ASUS Control Center is vulnerable to SQL injection. An authenticated remote attacker with general user privilege can inject SQL command to specific API parameters to acquire database schema or access data.

  • CVE-2019-12358HigJun 17, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendsms.php (when the attacker has dls_print authority) via a dlid cookie.

  • CVE-2019-12356HigJun 17, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /user/dls_download.php (when the attacker has dls_download authority) via the id parameter.

  • CVE-2019-12355HigJun 17, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /user/dls_print.php (when the attacker has dls_print authority) via the id parameter.

  • CVE-2019-12352HigJun 17, 2022
    risk 0.57cvss 8.8epss 0.01

    An issue was discovered in zzcms 2019. There is a SQL injection Vulnerability in /dl/dl_sendmail.php (when the attacker has dls_print authority) via a dlid cookie.

  • CVE-2020-35597HigJun 16, 2022
    risk 0.57cvss 8.8epss 0.02

    Victor CMS 1.0 is vulnerable to SQL injection via c_id parameter of admin_edit_comment.php, p_id parameter of admin_edit_post.php, u_id parameter of admin_edit_user.php, and edit parameter of admin_update_categories.php.

  • CVE-2022-32991HigJun 15, 2022
    risk 0.57cvss 8.8epss 0.01

    Web Based Quiz System v1.0 was discovered to contain a SQL injection vulnerability via the eid parameter at welcome.php.

  • CVE-2022-32302HigJun 15, 2022
    risk 0.57cvss 8.8epss 0.01

    Theme Park Ticketing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at edit_ticket.php.

  • CVE-2022-32300HigJun 15, 2022
    risk 0.57cvss 8.8epss 0.01

    YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the MailSendID parameter at /App/Lib/Action/Admin/MailAction.class.php.

  • CVE-2022-32299HigJun 15, 2022
    risk 0.57cvss 8.8epss 0.01

    YoudianCMS v9.5.0 was discovered to contain a SQL injection vulnerability via the id parameter at /App/Lib/Action/Admin/SiteAction.class.php.

  • CVE-2021-40961HigJun 9, 2022
    risk 0.57cvss 8.8epss 0.02

    CMS Made Simple <=2.2.15 is affected by SQL injection in modules/News/function.admin_articlestab.php. The $sortby variable is concatenated with $query1, but it is possible to inject arbitrary SQL language without using the '.

  • CVE-2022-1683HigJun 8, 2022
    risk 0.57cvss 8.8epss 0.02

    The amtyThumb WordPress plugin through 4.2.0 does not sanitise and escape a parameter before using it in a SQL statement via its shortcode, leading to an SQL injection and is exploitable by any authenticated user (and not just Author+ like the original advisory mention) due to…

  • CVE-2022-30469HigJun 6, 2022
    risk 0.57cvss 8.8epss 0.01

    In Afian Filerun 20220202, lack of sanitization of the POST parameter "metadata[]" in `/?module=fileman&section=get&page=grid` leads to SQL injection.

  • CVE-2021-41932HigJun 6, 2022
    risk 0.57cvss 8.8epss 0.01

    A blind SQL injection vulnerability in search form in TeamMate+ Audit version 28.0.19.0 allows any authenticated user to create malicious SQL injections, which can result in complete database compromise, gaining information about other users, unauthorized access to audit data…

  • CVE-2022-29685HigMay 26, 2022
    risk 0.57cvss 8.8epss 0.01

    CSCMS Music Portal System v4.2 was discovered to contain a blind SQL injection vulnerability via the id parameter at /admin.php/User/level_sort.

  • CVE-2022-29669HigMay 26, 2022
    risk 0.57cvss 8.8epss 0.01

    CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/news/admin/lists/zhuan.

  • CVE-2022-29667HigMay 26, 2022
    risk 0.57cvss 8.8epss 0.01

    CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via /admin.php/pic/admin/pic/hy. This vulnerability is exploited via restoring deleted photos.

  • CVE-2022-29664HigMay 26, 2022
    risk 0.57cvss 8.8epss 0.01

    CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/type/pl_save.

  • CVE-2021-40317HigMay 26, 2022
    risk 0.57cvss 8.8epss 0.01

    Piwigo 11.5.0 is affected by a SQL injection vulnerability via admin.php and the id parameter.