VYPR

CWE-140

Improper Neutralization of Delimiters

BaseDraft

Description

The product does not neutralize or incorrectly neutralizes delimiters.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-15

CVEs mapped to this weakness (20)

  • CVE-2025-32918HigJul 4, 2025
    risk 0.57cvss 8.8epss 0.00

    Improper neutralization of Livestatus command delimiters in autocomplete endpoint within the RestAPI of Checkmk versions <2.4.0p6, <2.3.0p35, <2.2.0p44, and 2.1.0 (EOL) allows an authenticated user to inject arbitrary Livestatus commands.

  • CVE-2023-31208HigMay 17, 2023
    risk 0.54cvss 8.3epss 0.01

    Improper neutralization of livestatus command delimiters in the RestAPI in Checkmk < 2.0.0p36, < 2.1.0p28, and < 2.2.0b8 (beta) allows arbitrary livestatus command execution for authorized users.

  • CVE-2026-47162HigJun 11, 2026
    risk 0.50cvss 8.8epss 0.00

    Vim is an open source, command line text editor. Prior to version 9.2.0495, a Vimscript code injection vulnerability exists in s:NetrwBookHistSave() in the netrw plugin (runtime/pack/dist/opt/netrw/autoload/netrw.vim) when serializing browsed directory paths to the history file…

  • CVE-2025-47779HigMay 22, 2025
    risk 0.50cvss 7.7epss 0.00

    Asterisk is an open-source private branch exchange (PBX). Prior to versions 18.26.2, 20.14.1, 21.9.1, and 22.4.1 of Asterisk and versions 18.9-cert14 and 20.7-cert5 of certified-asterisk, SIP requests of the type MESSAGE (RFC 3428) authentication do not get proper alignment. An…

  • CVE-2024-38865HigApr 10, 2025
    risk 0.50cvss 8.8epss 0.01

    Improper neutralization of livestatus command delimiters in a specific endpoint within RestAPI of Checkmk prior to 2.2.0p39, 2.3.0p25, and 2.1.0p51 (EOL) allows arbitrary livestatus command execution. Exploitation requires the attacker to have a contact group assigned to their…

  • CVE-2023-6157HigNov 22, 2023
    risk 0.49cvss 7.6epss 0.01

    Improper neutralization of livestatus command delimiters in ajax_search in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users.

  • CVE-2023-6156HigNov 22, 2023
    risk 0.49cvss 7.6epss 0.01

    Improper neutralization of livestatus command delimiters in the availability timeline in Checkmk <= 2.0.0p39, < 2.1.0p37, and < 2.2.0p15 allows arbitrary livestatus command execution for authorized users.

  • CVE-2026-6322HigMay 5, 2026
    risk 0.42cvss 7.5epss 0.00

    fast-uri normalize() decoded percent-encoded authority delimiters inside the host component and then re-emitted them as raw delimiters during serialization. A host that combined an allowed domain, an encoded at-sign, and a different domain was re-emitted with the at-sign as a…

  • CVE-2026-33456HigApr 10, 2026
    risk 0.42cvss 7.6epss 0.00

    Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with access to the notification test page to inject arbitrary Livestatus commands via a crafted service description.

  • CVE-2024-38866HigMay 27, 2025
    risk 0.42cvss 7.5epss 0.00

    Improper neutralization of input in Nagvis before version 1.9.47 which can lead to livestatus injection

  • CVE-2024-6542MedJul 22, 2024
    risk 0.42cvss 6.5epss 0.00

    Improper neutralization of livestatus command delimiters in mknotifyd in Checkmk <= 2.0.0p39, < 2.1.0p47, < 2.2.0p32 and < 2.3.0p11 allows arbitrary livestatus command execution.

  • CVE-2023-38488HigJul 27, 2023
    risk 0.39cvss 7.1epss 0.01

    Kirby is a content management system. A vulnerability in versions prior to 3.5.8.3, 3.6.6.3, 3.7.5.2, 3.8.4.1, and 3.9.6 affects all Kirby sites that might have potential attackers in the group of authenticated Panel users or that allow external visitors to update a Kirby…

  • CVE-2025-48879MedJun 10, 2025
    risk 0.35cvss 6.5epss 0.00

    OctoPrint versions up until and including 1.11.1 contain a vulnerability that allows any unauthenticated attacker to send a manipulated broken multipart/form-data request to OctoPrint and through that make the web server component become unresponsive. The issue can be triggered…

  • CVE-2026-33457MedApr 10, 2026
    risk 0.34cvss 6.3epss 0.00

    Livestatus injection in the prediction graph page in Checkmk <2.5.0b4, <2.4.0p26, and <2.3.0p47 allows an authenticated user to inject arbitrary Livestatus commands via a crafted service name parameter due to insufficient sanitization of the service description value.

  • CVE-2026-33455MedApr 10, 2026
    risk 0.34cvss 6.3epss 0.00

    Livestatus injection in the monitoring quicksearch in Checkmk <2.5.0b4 allows an authenticated attacker to inject livestatus commands via the search query due to insufficient input sanitization in search filter plugins.

  • CVE-2025-52989MedJul 11, 2025
    risk 0.33cvss 5.1epss 0.00

    An Improper Neutralization of Delimiters vulnerability in the UI of Juniper Networks Junos OS and Junos OS Evolved allows a local, authenticated attacker with high privileges to modify the system configuration. A user with limited configuration and commit permissions, using a…

  • CVE-2024-42392MedNov 18, 2024
    risk 0.26cvss 4.0epss 0.00

    Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite loop bug if the input string contains unexpected characters.

  • CVE-2024-42385MedNov 18, 2024
    risk 0.26cvss 4.0epss 0.00

    Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an out-of-bound memory write if the PEM certificate contains unexpected characters.

  • CVE-2024-42482MedAug 12, 2024
    risk 0.24cvss 4.8epss 0.01

    fish-shop/syntax-check is a GitHub action for syntax checking fish shell files. Improper neutralization of delimiters in the `pattern` input (specifically the command separator `;` and command substitution characters `(` and `)`) mean that arbitrary command injection is possible…

  • CVE-2026-21691MedJan 7, 2026
    risk 0.00cvss 5.4epss 0.00

    iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) color management profiles. Versions prior to 2.3.1.2 have a Type Confusion vulnerability in `CIccTag:IsTypeCompressed()`. This…