Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)

4,444
CRITICAL
7,116
HIGH
4,287
MEDIUM
104
LOW
16,171 CVEs · Page 186/324
6.3
CVE-2024-10072

A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. This issue affects the function act

6.3
CVE-2024-10129

A vulnerability classified as critical has been found in HFO4 shudong-share up to 2.4.7. This affects an unknown part of

6.3
CVE-2024-10133

A vulnerability has been found in ESAFENET CDG 5 and classified as critical. Affected by this vulnerability is the funct

6.3
CVE-2024-10134

A vulnerability was found in ESAFENET CDG 5 and classified as critical. Affected by this issue is the function connectLo

6.3
CVE-2024-10135

A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. This affects the function actionDelNetS

6.3
CVE-2024-10136

A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been declared as critical. This vulner

6.3
CVE-2024-10137

A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been rated as critical. This issue aff

6.3
CVE-2024-10138

A vulnerability classified as critical has been found in code-projects Pharmacy Management System 1.0. Affected is an un

6.3
CVE-2024-10139

A vulnerability classified as critical was found in code-projects Pharmacy Management System 1.0. Affected by this vulne

6.3
CVE-2024-10140

A vulnerability, which was classified as critical, has been found in code-projects Pharmacy Management System 1.0. Affec

6.3
CVE-2024-10153

A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. Affected by this vulner

6.3
CVE-2024-10154

A vulnerability was found in PHPGurukul Boat Booking System 1.0 and classified as critical. Affected by this issue is so

6.3
CVE-2024-10160

A vulnerability, which was classified as critical, has been found in PHPGurukul Boat Booking System 1.0. Affected by thi

6.3
CVE-2024-10162

A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affe

6.3
CVE-2024-10163

A vulnerability was found in SourceCodester Sentiment Based Movie Rating System 1.0. It has been classified as critical.

6.3
CVE-2024-10169

A vulnerability classified as critical was found in code-projects Hospital Management System 1.0. This vulnerability aff

6.3
CVE-2024-10170

A vulnerability, which was classified as critical, has been found in code-projects Hospital Management System 1.0. This

6.3
CVE-2024-10196

A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects

6.3
CVE-2024-10277

A vulnerability was found in ESAFENET CDG 5 and classified as critical. Affected by this issue is some unknown functiona

6.3
CVE-2024-10278

A vulnerability was found in ESAFENET CDG 5. It has been classified as critical. This affects an unknown part of the fil

6.3
CVE-2024-10279

A vulnerability was found in ESAFENET CDG 5. It has been declared as critical. This vulnerability affects unknown code o

6.3
CVE-2024-10291

A vulnerability has been found in ZZCMS 2023 and classified as critical. This vulnerability affects the function Ebak_Do

6.3
CVE-2024-10331

A vulnerability, which was classified as critical, has been found in PHPGurukul Vehicle Record System 1.0. This issue af

6.3
CVE-2024-10349

A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. Affected

6.3
CVE-2024-10376

A vulnerability was found in ESAFENET CDG 5. It has been declared as critical. This vulnerability affects the function a

6.3
CVE-2024-10377

A vulnerability was found in ESAFENET CDG 5. It has been rated as critical. This issue affects the function actionPassDe

6.3
CVE-2024-10378

A vulnerability classified as critical has been found in ESAFENET CDG 5. Affected is the function actionViewCDGRenewFile

6.3
CVE-2024-10380

A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0.

6.3
CVE-2024-48343

A SQL Injection vulnerability in ESAFENET CDG 5 and earlier allows an attacker to execute arbitrary code via the id para

6.3
CVE-2024-10406

A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0.

6.3
CVE-2024-10407

A vulnerability, which was classified as critical, was found in SourceCodester Petrol Pump Management Software 1.0. This

6.3
CVE-2024-10408

A vulnerability has been found in code-projects Blood Bank Management up to 1.0 and classified as critical. This vulnera

6.3
CVE-2024-10409

A vulnerability was found in code-projects Blood Bank Management 1.0 and classified as critical. This issue affects some

6.3
CVE-2024-10411

A vulnerability was found in SourceCodester Online Hotel Reservation System 1.0. It has been classified as critical. Aff

6.3
CVE-2024-10415

A vulnerability has been found in code-projects Blood Bank Management System 1.0 and classified as critical. This vulner

6.3
CVE-2024-10416

A vulnerability was found in code-projects Blood Bank Management System 1.0 and classified as critical. This issue affec

6.3
CVE-2024-10417

A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as critical. Affecte

6.3
CVE-2024-10418

A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected

6.3
CVE-2024-10421

A vulnerability classified as critical was found in SourceCodester Attendance and Payroll System 1.0. This vulnerability

6.3
CVE-2024-10422

A vulnerability, which was classified as critical, has been found in SourceCodester Attendance and Payroll System 1.0. T

6.3
CVE-2024-10423

A vulnerability, which was classified as critical, was found in Project Worlds Student Project Allocation System 1.0. Af

6.3
CVE-2024-10424

A vulnerability has been found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affec

6.3
CVE-2024-10425

A vulnerability was found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affected b

6.3
CVE-2024-10426

A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects a

6.3
CVE-2024-10427

A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been declared as critical. This vulnerabili

6.3
CVE-2024-10446

A vulnerability classified as critical has been found in Project Worlds Online Time Table Generator 1.0. Affected is an

6.3
CVE-2024-10447

A vulnerability classified as critical was found in Project Worlds Online Time Table Generator 1.0. Affected by this vul

6.3
CVE-2024-10450

A vulnerability has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as cri

6.3
CVE-2024-10500

A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is some unkn

6.3
CVE-2024-10501

A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function findById of th

Frequently Asked Questions

What is CWE-89?

CWE-89 (Improper Neutralization of Special Elements used in an SQL Command (SQL Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-89?

There are 24,110 CVE records associated with CWE-89 in our database. Of these, 4444 are critical severity, 7116 are high severity, and 4287 are medium severity.

How can I protect against CWE-89 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-89 using AI-powered security agents.

Detect CWE-89 Vulnerabilities

CyberStrike's AI agents automatically detect improper neutralization of special elements used in an sql command (sql injection) vulnerabilities across your infrastructure.

Get Started