VYPR

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

Hierarchy (View 1000)

Parents

Children

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-109 · CAPEC-110 · CAPEC-470 · CAPEC-66 · CAPEC-7

CVEs mapped to this weakness (20,855)

page 77 of 1,043
  • CVE-2024-24303CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in HiPresta "Gift Wrapping Pro" (hiadvancedgiftwrapping) module for PrestaShop before version 1.4.1, allows remote attackers to escalate privileges and obtain sensitive information via the HiAdvancedGiftWrappingGiftWrappingModuleFrontController::addGif…

  • CVE-2023-46914CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in RM bookingcalendar module for PrestaShop versions 2.7.9 and before, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via ics_export.php.

  • CVE-2024-24019CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset, limit, and sort parameters to perform SQL injection via /system/roleDataPerm/list

  • CVE-2024-24004CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseResponseInfo findInOutDetail() function of jshERP does not filter `column` and `order` parameters well enough, and an attacker can construct malicious payload to…

  • CVE-2024-24002CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.MaterialController: com.jsh.erp.utils.BaseResponseInfo getListWithStock() function of jshERP does not filter `column` and `order` parameters well enough, and an attacker can construct malicious payload to…

  • CVE-2024-24001CriFeb 7, 2024
    risk 0.64cvss 9.8epss 0.01

    jshERP v3.3 is vulnerable to SQL Injection. via the com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseResponseInfo findallocationDetail() function of jshERP which allows an attacker to construct malicious payload to bypass jshERP's protection mechanism.

  • CVE-2024-24015CriFeb 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass in crafted offset, limit, and sort parameters to perform SQL via /sys/user/exit

  • CVE-2024-24013CriFeb 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability exists in Novel-Plus v4.3.0-RC1 and prior versions. An attacker can pass crafted offset, limit, and sort parameters to perform SQL injection via /novel/pay/list

  • CVE-2024-24112CriFeb 6, 2024
    risk 0.64cvss 9.8epss 0.03

    xmall v1.1 was discovered to contain a SQL injection vulnerability via the orderDir parameter.

  • CVE-2024-0709CriFeb 5, 2024
    risk 0.64cvss 9.8epss 0.01

    The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to SQL Injection via the 'coinslist' parameter in versions 2.0 to 2.6.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL…

  • CVE-2023-51951CriFeb 5, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in Stock Management System 1.0 allows a remote attacker to execute arbitrary code via the id parameter in the manage_bo.php file.

  • CVE-2024-24029CriFeb 2, 2024
    risk 0.64cvss 9.8epss 0.01

    JFinalCMS 5.0.0 is vulnerable to SQL injection via /admin/content/data.

  • CVE-2024-22108CriFeb 2, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in GTB Central Console 15.17.1-30814.NG. The method setTermsHashAction at /opt/webapp/lib/PureApi/CCApi.class.php is vulnerable to an unauthenticated SQL injection via /ccapi.php that an attacker can abuse in order to change the Administrator password to…

  • CVE-2023-48793CriFeb 2, 2024
    risk 0.64cvss 9.8epss 0.07

    Zoho ManageEngine ADAudit Plus through 7250 allows SQL Injection in the aggregate report feature.

  • CVE-2023-48792CriFeb 2, 2024
    risk 0.64cvss 9.8epss 0.07

    Zoho ManageEngine ADAudit Plus through 7250 is vulnerable to SQL Injection in the report export option.

  • CVE-2022-47072CriJan 31, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in Enterprise Architect 16.0.1605 32-bit allows attackers to run arbitrary SQL commands via the Find parameter in the Select Classifier dialog box..

  • CVE-2024-24141CriJan 29, 2024
    risk 0.64cvss 9.8epss 0.01

    Sourcecodester School Task Manager App 1.0 allows SQL Injection via the 'task' parameter.

  • CVE-2023-51210CriJan 23, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in Webkul Bundle Product 6.0.1 allows a remote attacker to execute arbitrary code via the id_product parameters in the UpdateProductQuantity function.

  • CVE-2023-48118CriJan 22, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL Injection vulnerability in Quest Analytics LLC IQCRM v.2023.9.5 allows a remote attacker to execute arbitrary code via a crafted request to the Common.svc WSDL page.

  • CVE-2024-23751CriJan 22, 2024
    risk 0.64cvss 9.8epss 0.01

    LlamaIndex (aka llama_index) through 0.9.34 allows SQL injection via the Text-to-SQL feature in NLSQLTableQueryEngine, SQLTableRetrieverQueryEngine, NLSQLRetriever, RetrieverQueryEngine, and PGVectorSQLQueryEngine. For example, an attacker might be able to delete this year's…