cwe-89
Safeguard articles tagged "cwe-89" — guides, analysis, and best practices for software supply chain and application security.
38 articles
CVE-2021-42258: BQE BillQuick Web Suite SQL Injection Vulnerability
CVE-2021-42258 affects BQE BillQuick Web Suite and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-27101: Accellion FTA SQL Injection Vulnerability
CVE-2021-27101 affects Accellion FTA and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-17463: Fuel CMS SQL Injection Vulnerability
CVE-2020-17463 affects Fuel CMS Fuel CMS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-10.
CVE-2020-12271: Sophos SFOS SQL Injection Vulnerability
CVE-2020-12271 affects Sophos SFOS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-20016: SonicWall SSLVPN SMA100 SQL Injection Vulnerability
CVE-2021-20016 affects SonicWall SSLVPN SMA100 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2019-7481: SonicWall SMA100 SQL Injection Vulnerability
CVE-2019-7481 affects SonicWall SMA100 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-5722: Grandstream Networks UCM6200 Series SQL Injection Vulnerability
CVE-2020-5722 affects Grandstream UCM6200 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-28.
CVE-2021-20028: SonicWall Secure Remote Access (SRA) SQL Injection Vulnerability
CVE-2021-20028 affects SonicWall Secure Remote Access (SRA) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-03-28.
CVE-2018-7841: Schneider Electric U.motion Builder SQL Injection Vulnerability
CVE-2018-7841 affects Schneider Electric U.motion Builder and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-04-15.
CVE-2017-18362: Kaseya VSA SQL Injection Vulnerability
CVE-2017-18362 affects Kaseya Virtual System/Server Administrator (VSA) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-05-24.
CVE-2016-2386: SAP NetWeaver SQL Injection Vulnerability
CVE-2016-2386 affects SAP NetWeaver and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-06-09.
CVE-2023-34362: Progress MOVEit Transfer SQL Injection Vulnerability
CVE-2023-34362 affects Progress MOVEit Transfer and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2023-06-02.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.