CWE-74

High likelihood

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Parent: CWE-707 - Improper Neutralization

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

4,807 vulnerabilities with CWE-74
CVE-2025-6959 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via ID Parameter in eloginwel.php
CVSS 7.3
CVE-2025-6958 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via /edit.php ID Parameter
CVSS 7.3
CVE-2025-6957 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via mailuid Parameter
CVSS 7.3
CVE-2025-6956 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via /changepassemp.php ID Parameter
CVSS 7.3
CVE-2025-6955 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via mailuid Parameter in aprocess.php
CVSS 7.3
CVE-2025-6954 HIGH
Campcodes Employee Management System 1.0 - SQL Injection via /applyleave.php ID Parameter
CVSS 7.3
CVE-2025-6938 HIGH
Simple Pizza Ordering System 1.0 - SQL Injection via /editcus.php ID Parameter
CVSS 7.3
CVE-2025-6937 HIGH
Simple Pizza Ordering System 1.0 - SQL Injection via ID Parameter in large.php
CVSS 7.3
CVE-2025-6936 HIGH
Simple Pizza Ordering System 1.0 - SQL Injection via /addpro.php ID Parameter
CVSS 7.3
CVE-2025-6935 HIGH
Campcodes Sales and Inventory System 1.0 - SQL Injection via Payment Add Page CID Parameter
CVSS 7.3
CVE-2025-6930 MEDIUM
PHPGurukul Zoo Management System 2.1 - SQL Injection via ID Parameter in manage-foreigners-ticket.php
CVSS 6.3
CVE-2025-6929 MEDIUM
PHPGurukul Zoo Management System 2.1 - SQL Injection via viewid Parameter
CVSS 6.3
CVE-2025-6917 HIGH
Online Hotel Booking 1.0 - SQL Injection via uname Parameter
CVSS 7.3
CVE-2025-6915 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via /register.php Session Parameter
CVSS 6.3
CVE-2025-6914 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via fmarks2 Parameter
CVSS 6.3
CVE-2025-6913 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via aemailid Parameter
CVSS 6.3
CVE-2025-6912 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via manage-students.php del Parameter
CVSS 6.3
CVE-2025-6911 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via manage-subjects.php del Parameter
CVSS 6.3
CVE-2025-6910 MEDIUM
PHPGurukul Student Record System 3.2 - SQL Injection via Session Parameter
CVSS 6.3
CVE-2025-6909 MEDIUM
PHPGurukul Old Age Home Management System 1.0 - SQL Injection via emeradd Parameter
CVSS 6.3
CVE-2025-6908 MEDIUM
PHPGurukul Old Age Home Management System 1.0 - SQL Injection via sertitle Parameter
CVSS 6.3
CVE-2025-6907 HIGH
Car Rental System 1.0 - SQL Injection via fname Parameter in book_car.php
CVSS 7.3
CVE-2025-6906 HIGH
Car Rental System 1.0 - SQL Injection via /login.php uname Parameter
CVSS 7.3
CVE-2025-6905 HIGH
Car Rental System 1.0 - SQL Injection via Signup Page Fname Parameter
CVSS 7.3
CVE-2025-6904 HIGH
Car Rental System 1.0 - SQL Injection via car_name Parameter
CVSS 7.3
Details
Vulnerabilities 4,807
Exploit Likelihood High