CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,807 vulnerabilities with CWE-74
CVE-2025-7489 MEDIUM
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 6.3
CVE-2025-7484 MEDIUM
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 6.3
CVE-2025-7483 HIGH
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 7.3
CVE-2025-7482 MEDIUM
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 6.3
CVE-2025-7481 MEDIUM
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 6.3
CVE-2025-7480 HIGH
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 7.3
CVE-2025-7479 MEDIUM
PHPGurukul Vehicle Parking Management System 1.13 - SQL Injection
CVSS 6.3
CVE-2025-7478 HIGH
code-projects Modern Bag 1.0 - SQL Injection via /admin/category-list.php idCate Parameter
CVSS 7.3
CVE-2025-7476 HIGH
Simple Car Rental System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7475 HIGH
Simple Car Rental System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7474 HIGH
Job Diary 1.0 - SQL Injection via Search Parameter in /search.php
CVSS 7.3
CVE-2025-7471 HIGH
code-projects Modern Bag 1.0 - SQL Injection via /admin/login-back.php user-name Parameter
CVSS 7.3
CVE-2025-7469 HIGH
Campcodes Sales and Inventory System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7467 HIGH
code-projects Modern Bag 1.0 - SQL Injection via /product-detail.php ID Parameter
CVSS 7.3
CVE-2025-7466 HIGH
1000projects ABC Courier Management 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7461 HIGH
code-projects Modern Bag 1.0 - SQL Injection via proId Parameter in /action.php
CVSS 7.3
CVE-2025-7459 HIGH
code-projects Mobile Shop 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7457 HIGH
Campcodes Online Movie Theater Seat Reservation System 1.0 - SQL Injection via ID Parameter in manage_movie.php
CVSS 7.3
CVE-2025-7456 HIGH
Campcodes Online Movie Theater Seat Reservation System 1.0 - SQL Injection via Reserve.php ID Parameter
CVSS 7.3
CVE-2025-7455 HIGH
Campcodes Online Movie Theater Seat Reservation System 1.0 - SQL Injection via /manage_reserve.php mid Parameter
CVSS 7.3
CVE-2025-7454 HIGH
Campcodes Online Movie Theater Seat Reservation System 1.0 - SQL Injection via /admin/manage_theater.php ID Parameter
CVSS 7.3
CVE-2025-7436 HIGH
Campcodes Online Recruitment Management System 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7415 MEDIUM
Tenda O3V2 1.0.0.12(3880 - Command Injection
CVSS 6.3
CVE-2025-7411 HIGH
LifeStyle Store 1.0 - SQL Injection
CVSS 7.3
CVE-2025-7410 HIGH
LifeStyle Store 1.0 - SQL Injection
CVSS 7.3
Details
Vulnerabilities 4,807
Exploit Likelihood High