VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,861)

page 403 of 1,044
  • CVE-2020-5766HigJul 13, 2020
    risk 0.49cvss 7.5epss 0.07

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in SRS Simple Hits Counter Plugin for WordPress 1.0.3 and 1.0.4 allows a remote, unauthenticated attacker to determine the value of database fields.

  • CVE-2020-13993HigJul 9, 2020
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in Mods for HESK 3.1.0 through 2019.1.0. A blind time-based SQL injection issue allows remote unauthenticated attackers to retrieve information from the database via a ticket.

  • CVE-2020-15008HigJul 7, 2020
    risk 0.49cvss 7.5epss 0.01

    A SQLi exists in the probe code of all Connectwise Automate versions before 2020.7 or 2019.12. A SQL Injection in the probe implementation to save data to a custom table exists due to inadequate server side validation. As the code creates dynamic SQL for the insert statement and…

  • CVE-2020-12014HigMay 8, 2020
    risk 0.49cvss 7.5epss 0.02

    Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Input is not properly sanitized and may allow an attacker to inject SQL commands.

  • CVE-2019-18866HigMay 7, 2020
    risk 0.49cvss 7.5epss 0.01

    Unauthenticated SQL injection via the username in the login mechanism in Blaauw Remote Kiln Control through v3.00r4 allows a user to extract arbitrary data from the rkc database.

  • CVE-2020-11032HigMay 5, 2020
    risk 0.49cvss 7.6epss 0.01

    In GLPI before version 9.4.6, there is a SQL injection vulnerability for all helpdesk instances. Exploiting this vulnerability requires a technician account. This is fixed in version 9.4.6.

  • CVE-2020-10617HigApr 9, 2020
    risk 0.49cvss 7.5epss 0.01

    There are multiple ways an unauthenticated attacker could perform SQL injection on WebAccess/NMS (versions prior to 3.0.2) to gain access to sensitive information.

  • CVE-2019-19094HigApr 2, 2020
    risk 0.49cvss 7.6epss 0.01

    Lack of input checks for SQL queries in ABB eSOMS versions 3.9 to 6.0.3 might allow an attacker SQL injection attacks against the backend database.

  • CVE-2019-19209HigMar 16, 2020
    risk 0.49cvss 7.5epss 0.02

    Dolibarr ERP/CRM before 10.0.3 allows SQL Injection.

  • CVE-2020-10184HigMar 5, 2020
    risk 0.49cvss 7.5epss 0.01

    The verify endpoint in YubiKey Validation Server before 2.40 does not check the length of SQL queries, which allows remote attackers to cause a denial of service, aka SQL injection. NOTE: this issue is potentially relevant to persons outside Yubico who operate a self-hosted OTP…

  • CVE-2019-19986HigFeb 26, 2020
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29. An attacker without authentication is able to execute arbitrary SQL SELECT statements by injecting the HTTP (POST or GET) parameter persoid into /tools/VamPersonPhoto.php. The SQL Injection type…

  • CVE-2020-9268HigFeb 18, 2020
    risk 0.49cvss 7.5epss 0.01

    SoPlanning 1.45 is vulnerable to SQL Injection in the OrderBy clause, as demonstrated by the projets.php?order=nom_createur&by= substring.

  • CVE-2020-8596HigFeb 11, 2020
    risk 0.49cvss 7.5epss 0.02

    participants-database.php in the Participants Database plugin 1.9.5.5 and previous versions for WordPress has a time-based SQL injection vulnerability via the ascdesc, list_filter_count, or sortBy parameters. It is possible to exfiltrate data and potentially execute code (if…

  • CVE-2020-3719HigJan 29, 2020
    risk 0.49cvss 7.5epss 0.03

    Magento versions 2.3.3 and earlier, 2.2.10 and earlier, 1.14.4.3 and earlier, and 1.9.4.3 and earlier have an sql injection vulnerability. Successful exploitation could lead to sensitive information disclosure.

  • CVE-2019-19016HigDec 2, 2019
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in TitanHQ WebTitan before 5.18. Some functions, such as /history-x.php, of the administration interface are vulnerable to SQL Injection through the results parameter. This could be used by an attacker to extract sensitive information from the appliance…

  • CVE-2019-2211HigNov 13, 2019
    risk 0.49cvss 7.5epss 0.01

    In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1…

  • CVE-2019-12720HigNov 12, 2019
    risk 0.49cvss 7.5epss 0.02

    AUO SunVeillance Monitoring System before v1.1.9e is vulnerable to mvc_send_mail.aspx (MailAdd parameter) SQL Injection. An Attacker can carry a SQL Injection payload to the server, allowing the attacker to read privileged data. This also affects the picture_manage_mvc.aspx…

  • CVE-2019-17128HigOct 9, 2019
    risk 0.49cvss 7.5epss 0.02

    Netreo OmniCenter through 12.1.1 allows unauthenticated SQL Injection (Boolean Based Blind) in the redirect parameters and parameter name of the login page through a GET request. The injection allows an attacker to read sensitive information from the database used by the…

  • CVE-2019-17049HigSep 30, 2019
    risk 0.49cvss 7.5epss 0.01

    NETGEAR SRX5308 4.3.5-3 devices allow SQL Injection, as exploited in the wild in September 2019 to add a new user account.

  • CVE-2019-5991HigSep 12, 2019
    risk 0.49cvss 7.6epss 0.01

    SQL injection vulnerability in the Cybozu Garoon 4.0.0 to 4.10.3 allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.