VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,812)

page 29 of 1,041
  • CVE-2020-35326CriJan 18, 2023
    risk 0.65cvss 9.8epss 0.14

    SQL Injection vulnerability in file /inxedu/demo_inxedu_open/src/main/resources/mybatis/inxedu/website/WebsiteImagesMapper.xml in inxedu 2.0.6 via the id value.

  • CVE-2022-46502CriJan 13, 2023
    risk 0.65cvss 9.8epss 0.14

    Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /student_enrollment/admin/login.php.

  • CVE-2022-3792CriJan 10, 2023
    risk 0.65cvss 9.8epss 0.14

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in GullsEye GullsEye terminal operating system allows SQL Injection. This issue affects GullsEye terminal operating system: from unspecified before 5.0.13.

  • CVE-2022-44588CriDec 15, 2022
    risk 0.65cvss 9.9epss 0.02

    Unauth. SQL Injection vulnerability in Cryptocurrency Widgets Pack Plugin <=1.8.1 on WordPress.

  • CVE-2022-38488CriDec 14, 2022
    risk 0.65cvss 9.8epss 0.14

    logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username parameter.

  • CVE-2022-45822CriDec 5, 2022
    risk 0.65cvss 10.0epss 0.01

    Unauth. SQL Injection (SQLi) vulnerability in Advanced Booking Calendar plugin <= 1.7.1 on WordPress.

  • CVE-2022-42497CriNov 18, 2022
    risk 0.65cvss 10.0epss 0.01

    Arbitrary Code Execution vulnerability in Api2Cart Bridge Connector plugin <= 1.1.0 on WordPress.

  • CVE-2022-43775CriOct 26, 2022
    risk 0.65cvss 9.8epss 0.21

    The HICT_Loop class in Delta Electronics DIAEnergy v1.9 contains a SQL Injection flaw that could allow an attacker to gain code execution on a remote system.

  • CVE-2022-26959CriSep 16, 2022
    risk 0.65cvss 10.0epss 0.01

    There are two full (read/write) Blind/Time-based SQL injection vulnerabilities in the Northstar Club Management version 6.3 application. The vulnerabilities exist in the userName parameter of the processlogin.jsp page in the /northstar/Portal/ directory and the userID parameter…

  • CVE-2022-22897CriAug 29, 2022
    risk 0.65cvss 9.8epss 0.14

    A SQL injection vulnerability in the product_all_one_img and image_product parameters of the ApolloTheme AP PageBuilder component through 2.4.4 for PrestaShop allows unauthenticated attackers to exfiltrate database data.

  • CVE-2022-37113CriAug 23, 2022
    risk 0.65cvss 9.8epss 0.15

    Bluecms 1.6 has SQL injection in line 132 of admin/area.php

  • CVE-2022-1768CriJun 13, 2022
    risk 0.65cvss 9.8epss 0.13

    The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to insufficient escaping and parameterization on user supplied data passed to multiple SQL queries in the ~/rsvpmaker-email.php file. This makes it possible for unauthenticated attackers to…

  • CVE-2022-0786CriJun 13, 2022
    risk 0.65cvss 9.8epss 0.13

    The KiviCare WordPress plugin before 2.3.9 does not sanitise and escape some parameters before using them in SQL statements via the ajax_post AJAX action with the get_doctor_details route, leading to SQL Injections exploitable by unauthenticated users

  • CVE-2022-31788CriJun 10, 2022
    risk 0.65cvss 9.8epss 0.15

    IdeaLMS 2022 allows SQL injection via the IdeaLMS/ChatRoom/ClassAccessControl/6?isBigBlueButton=0&ClassID= pathname.

  • CVE-2022-1692CriJun 8, 2022
    risk 0.65cvss 9.8epss 0.11

    The CP Image Store with Slideshow WordPress plugin before 1.0.68 does not sanitise and escape the ordering_by query parameter before using it in a SQL statement in pages where the [codepeople-image-store] is embed, allowing unauthenticated users to perform an SQL injection attack

  • CVE-2022-1556CriMay 30, 2022
    risk 0.65cvss 9.8epss 0.20

    The StaffList WordPress plugin before 3.1.5 does not properly sanitise and escape a parameter before using it in a SQL statement when searching for Staff in the admin dashboard, leading to an SQL Injection

  • CVE-2022-29660CriMay 26, 2022
    risk 0.65cvss 9.8epss 0.12

    CSCMS Music Portal System v4.2 was discovered to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del.

  • CVE-2022-0781CriMay 23, 2022
    risk 0.65cvss 9.8epss 0.13

    The Nirweb support WordPress plugin before 2.8.2 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action (available to unauthenticated users), leading to an SQL injection

  • CVE-2022-28531CriMay 20, 2022
    risk 0.65cvss 9.8epss 0.15

    Sourcecodester Covid-19 Directory on Vaccination System1.0 is vulnerable to SQL Injection via the admin/login.php txtusername (aka Username) field.

  • CVE-2022-0867CriMay 16, 2022
    risk 0.65cvss 9.8epss 0.13

    The Pricing Table WordPress plugin before 3.6.1 fails to properly sanitize and escape user supplied POST data before it is being interpolated in an SQL statement and then executed via an AJAX action available to unauthenticated users