VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,812)

page 7 of 1,041
  • CVE-2022-0513CriFeb 16, 2022
    risk 0.68cvss 9.8epss 0.53

    The WP Statistics WordPress plugin is vulnerable to SQL Injection due to insufficient escaping and parameterization of the exclusion_reason parameter found in the ~/includes/class-wp-statistics-exclusion.php file which allows attackers without authentication to inject arbitrary…

  • CVE-2022-24260CriFeb 4, 2022
    risk 0.68cvss 9.8epss 0.50

    A SQL injection vulnerability in Voipmonitor GUI before v24.96 allows attackers to escalate privileges to the Administrator level.

  • CVE-2021-40493CriOct 13, 2021
    risk 0.68cvss 9.8epss 0.50

    Zoho ManageEngine OpManager before 125437 is vulnerable to SQL Injection in the support diagnostics module. This occurs via the pollingObject parameter of the getDataCollectionFailureReason API.

  • CVE-2021-41649CriOct 1, 2021
    risk 0.68cvss 9.8epss 0.52

    An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. Using a post request does not sanitize the user input.

  • CVE-2021-3018CriJan 5, 2021
    risk 0.68cvss 9.8epss 0.20

    ipeak Infosystems ibexwebCMS (aka IPeakCMS) 3.5 is vulnerable to an unauthenticated Boolean-based SQL injection via the id parameter on the /cms/print.php page.

  • CVE-2020-35847CriDec 30, 2020
    risk 0.68cvss 9.8epss 0.98

    Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function.

  • CVE-2020-23935CriAug 20, 2020
    risk 0.68cvss 9.8epss 0.16

    Kabir Alhasan Student Management System 1.0 is vulnerable to Authentication Bypass via "Username: admin'# && Password: (Write Something)".

  • CVE-2020-10230CriMar 16, 2020
    risk 0.68cvss 9.8epss 0.15

    CentOS-WebPanel.com (aka CWP) CentOS Web Panel (for CentOS 6 and 7) allows SQL Injection via the /cwp_{SESSION_HASH}/admin/loader_ajax.php term parameter.

  • CVE-2014-8673CriJan 7, 2020
    risk 0.68cvss 9.8epss 0.12

    Multiple SQL vulnerabilities exist in planning.php, user_list.php, projets.php, user_groupes.php, and groupe_list.php in Simple Online Planning (SOPPlanning)before 1.33.

  • CVE-2019-16692CriSep 22, 2019
    risk 0.68cvss 9.8epss 0.10

    phpIPAM 1.4 allows SQL injection via the app/admin/custom-fields/filter-result.php table parameter when action=add is used.

  • CVE-2019-14348CriAug 5, 2019
    risk 0.68cvss 9.8epss 0.21

    The BearDev JoomSport plugin 3.3 for WordPress allows SQL injection to steal, modify, or delete database information via the joomsport_season/new-yorkers/?action=playerlist sid parameter.

  • CVE-2018-20469CriJun 17, 2019
    risk 0.68cvss 9.8epss 0.19

    An issue was discovered in Tyto Sahi Pro through 7.x.x and 8.0.0. A parameter in the web reports module is vulnerable to h2 SQL injection. This can be exploited to inject SQL queries and run standard h2 system functions.

  • CVE-2019-11469CriApr 23, 2019
    risk 0.68cvss 9.8epss 0.17

    Zoho ManageEngine Applications Manager 12 through 14 allows FaultTemplateOptions.jsp resourceid SQL injection. Subsequently, an unauthenticated user can gain the authority of SYSTEM on the server by uploading a malicious file via the "Execute Program Action(s)" feature.

  • CVE-2019-11448CriApr 22, 2019
    risk 0.68cvss 9.8epss 0.12

    An issue was discovered in Zoho ManageEngine Applications Manager 11.0 through 14.0. An unauthenticated user can gain the authority of SYSTEM on the server due to a Popup_SLA.jsp sid SQL injection vulnerability. For example, the attacker can subsequently write arbitrary text to…

  • CVE-2019-9083CriMar 21, 2019
    risk 0.68cvss 9.8epss 0.18

    SQLiteManager 1.20 and 1.24 allows SQL injection via the /sqlitemanager/main.php dbsel parameter. NOTE: This product is discontinued.

  • CVE-2018-18761CriNov 16, 2018
    risk 0.68cvss 9.8epss 0.16

    SaltOS 3.1 r8126 allows action=login&querystring=&user=[SQL] SQL Injection.

  • CVE-2018-16159CriAug 30, 2018
    risk 0.68cvss 9.8epss 0.50

    The Gift Vouchers plugin through 2.0.1 for WordPress allows SQL Injection via the template_id parameter in a wp-admin/admin-ajax.php wpgv_doajax_front_template request.

  • CVE-2018-11511CriAug 16, 2018
    risk 0.68cvss 9.8epss 0.11

    The tree list functionality in the photo gallery application in ASUSTOR ADM 3.1.0.RFQ3 has a SQL injection vulnerability that affects the 'album_id' or 'scope' parameter via a photo-gallery/api/album/tree_lists/ URI.

  • CVE-2016-6566CriJul 13, 2018
    risk 0.68cvss 9.8epss 0.12

    The valueAsString parameter inside the JSON payload contained by the ucLogin_txtLoginId_ClientStat POST parameter of the Sungard eTRAKiT3 software version 3.2.1.17 is not properly validated. An unauthenticated remote attacker may be able to modify the POST request and insert a…

  • CVE-2018-6229CriMar 15, 2018
    risk 0.68cvss 9.8epss 0.10

    A SQL injection vulnerability in an Trend Micro Email Encryption Gateway 5.5 edit policy script could allow an attacker to execute SQL commands to upload and execute arbitrary code that may harm the target system.