CWE-89
High likelihoodImproper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.
19,915 vulnerabilities with CWE-89
CVE-2010-2577
Pligg CMS < 1.1.1 - SQL Injection via Story Title Parameter
CVE-2010-2933
AV Scripts AV Arcade 3 - SQL Injection
CVE-2010-2926
sNews 1.7 - SQL Injection via Category Parameter
CVE-2010-2925
Freeway CMS <1.4.3.210 - SQL Injection
CVE-2010-2924
myLinksDump Plugin 1.2 - SQL Injection
CVE-2010-2923
YouTube (com_youtube) 1.5 - SQL Injection
CVE-2010-2922
AKY Blog - SQL Injection via id Parameter
CVE-2010-2921
Joomla! com_golfcourseguide <0.9.6.0 - SQL Injection
CVE-2010-2919
StaticXT (com_staticxt) - SQL Injection via id Parameter
CVE-2010-2916
AJ Square AJ HYIP MERIDIAN - SQL Injection
CVE-2010-2915
AJ Square AJ HYIP PRIME - SQL Injection
CVE-2010-2912
Kayako eSupport 3.70.02 - SQL Injection
CVE-2010-2911
Kayako eSupport <3.70.02 - SQL Injection
CVE-2010-2910
Ozio Gallery - Joomla! <SQL Injection>
CVE-2010-2909
Joomla! com_ttvideo 1.0 - SQL Injection
CVE-2010-2908
com_joomdle < 0.24 - SQL Injection via course_id Parameter
CVE-2010-2907
com_huruhelpdesk - SQL Injection via cid[0] Parameter
CVE-2010-2906
ScriptsFeed & BrotherScripts - SQL Injection
CVE-2010-2905
ScriptsFeed/BrotherScripts - SQL Injection
CVE-2010-2855
Event Horizon EVH <1.1.10 - SQL Injection
CVE-2010-2853
iScripts VisualCaster - SQL Injection
CVE-2010-2851
Joomla! com_booklibrary <1.5 - SQL Injection
CVE-2010-2847
InterJoomla ArtForms 2.1b7.2 RC2 - SQL Injection
CVE-2010-2845
Joomla! com_quickfaq 1.0.3 - SQL Injection
CVE-2010-2721
RightInPoint Lyrics Script 3.0 - SQL Injection
Details
Vulnerabilities
19,915
Exploit Likelihood
High