CWE-89
20,841 CVEs • Abstraction: Base • Likelihood of Exploit: High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
CVEs (20,841)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection. via /Wedding-Management/admin/budget.php?booking_id=. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_manage_account_details.php?booking_id=31&user_id= |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_edit.php?booking=31&user_id=. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_assign.php?booking=31&user_id=. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via Wedding-Management/wedding_details.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\feature_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\users_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\photos_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\package_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via admin\client_assign.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\blog_events_edit.php. |
1Wedding Management System Project 1Wedding Management System Jun 17, 2026 Jun 2, 2022 N/A· v4 7.2 HIGH· v3 6.5 MEDIUM· v2 Wedding Management System v1.0 is vulnerable to SQL injection via /Wedding-Management/admin/blog_events_edit.php?id=31. |
1Simple Bus Ticket Booking System Project 1Simple Bus Ticket Booking System Jun 17, 2026 Jun 2, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Simple Bus Ticket Booking System 1.0 is vulnerable to SQL Injection via /SimpleBusTicket/index.php. |
elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_sidebar.php. |
elitecms 1.01 is vulnerable to SQL Injection via admin/edit_sidebar.php?page=2&sidebar= |
elitecms v1.01 is vulnerable to SQL Injection via /admin/add_sidebar.php. |
elitecms 1.01 is vulnerable to SQL Injection via /admin/add_post.php. |
elitecms v1.01 is vulnerable to SQL Injection via admin/edit_post.php. |
elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_page.php?page=. |