VYPR

CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

ClassDraftLikelihood: High

Description

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-136 · CAPEC-15 · CAPEC-183 · CAPEC-248 · CAPEC-40 · CAPEC-43 · CAPEC-75 · CAPEC-76

CVEs mapped to this weakness (3,835)

page 38 of 192
  • CVE-2021-43113CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.05

    iTextPDF in iText 7 and up to (excluding 4.4.13.3) 7.1.17 allows command injection via a CompareTool filename that is mishandled on the gs (aka Ghostscript) command line in GhostscriptHelper.java.

  • CVE-2021-35978CriDec 10, 2021
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered in Digi TransPort DR64, SR44 VC74, and WR. The ZING protocol allows arbitrary remote command execution with SUPER privileges. This allows an attacker (with knowledge of the protocol) to execute arbitrary code on the controller including overwriting…

  • CVE-2020-36381CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the singleCrunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2020-36380CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the crunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2020-36379CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the remove function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2020-36378CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the packageCmd function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2020-36377CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the dump function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2020-36376CriOct 31, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in the list function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via the filePath parameters.

  • CVE-2021-41744CriOct 22, 2021
    risk 0.64cvss 9.8epss 0.02

    All versions of yongyou PLM are affected by a command injection issue. UFIDA PLM (Product Life Cycle Management) is a strategic management method. It applies a series of enterprise application systems to support the entire process from conceptual design to the end of product…

  • CVE-2021-42094CriOct 7, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in Zammad before 4.1.1. Command Injection can occur via custom Packages.

  • CVE-2021-38124CriSep 28, 2021
    risk 0.64cvss 9.8epss 0.02

    Remote Code Execution vulnerability in Micro Focus ArcSight Enterprise Security Manager (ESM) product, affecting versions 7.0.2 through 7.5. The vulnerability could be exploited resulting in remote code execution.

  • CVE-2021-34351CriSep 27, 2021
    risk 0.64cvss 9.8epss 0.01

    A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and…

  • CVE-2021-34348CriSep 27, 2021
    risk 0.64cvss 9.8epss 0.01

    A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability could allow remote attackers to run arbitrary commands. We have already fixed this vulnerability in the following versions of QVR: QVR 5.1.5 build 20210803 and…

  • CVE-2019-6288CriSep 22, 2021
    risk 0.64cvss 9.8epss 0.03

    Edgecore ECS2020 Firmware 1.0.0.0 devices allow Unauthenticated Command Injection via the command1 HTTP header to the /EXCU_SHELL URI.

  • CVE-2021-28960CriSep 21, 2021
    risk 0.64cvss 9.8epss 0.02

    Zoho ManageEngine Desktop Central before build 10.0.683 allows unauthenticated command injection due to improper handling of an input command in on-demand operations.

  • CVE-2020-14119CriSep 16, 2021
    risk 0.64cvss 9.8epss 0.03

    There is command injection in the addMeshNode interface of xqnetwork.lua, which leads to command execution under administrator authority on Xiaomi router AX3600 with rom versionrom< 1.1.12

  • CVE-2020-18048CriSep 2, 2021
    risk 0.64cvss 9.8epss 0.02

    An issue in craigms/main.php of CraigMS 1.0 allows attackers to execute arbitrary commands via a crafted input entered into the DB Name field.

  • CVE-2019-10095CriSep 2, 2021
    risk 0.64cvss 9.8epss 0.06

    bash command injection vulnerability in Apache Zeppelin allows an attacker to inject system commands into Spark interpreter settings. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.

  • CVE-2021-39510CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.09

    An issue was discovered in D-Link DIR816_A1_FW101CNB04 750m11ac wireless router, The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command…

  • CVE-2021-39509CriAug 24, 2021
    risk 0.64cvss 9.8epss 0.05

    An issue was discovered in D-Link DIR-816 DIR-816A2_FWv1.10CNB05_R1B011D88210 The HTTP request parameter is used in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function. This can lead to command injection…