VYPR

CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

ClassDraftLikelihood: High

Description

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-136 · CAPEC-15 · CAPEC-183 · CAPEC-248 · CAPEC-40 · CAPEC-43 · CAPEC-75 · CAPEC-76

CVEs mapped to this weakness (3,835)

page 42 of 192
  • CVE-2019-8060CriAug 20, 2019
    risk 0.64cvss 9.8epss 0.06

    Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have a command injection vulnerability. Successful exploitation could lead…

  • CVE-2019-1010174CriJul 25, 2019
    risk 0.64cvss 9.8epss 0.05

    CImg The CImg Library v.2.3.3 and earlier is affected by: command injection. The impact is: RCE. The component is: load_network() function. The attack vector is: Loading an image from a user-controllable url can lead to command injection, because no string sanitization is done…

  • CVE-2019-7850CriJul 18, 2019
    risk 0.64cvss 9.8epss 0.06

    Adobe Campaign Classic version 18.10.5-8984 and earlier versions have a Command injection vulnerability. Successful exploitation could lead to Arbitrary Code Execution in the context of the current user.

  • CVE-2019-11535CriJul 17, 2019
    risk 0.64cvss 9.8epss 0.05

    Unsanitized user input in the web interface for Linksys WiFi extender products (RE6400 and RE6300 through 1.2.04.022) allows for remote command execution. An attacker can access system OS configurations and commands that are not intended for use beyond the web UI.

  • CVE-2017-8404CriJul 2, 2019
    risk 0.64cvss 9.8epss 0.08

    An issue was discovered on D-Link DCS-1130 devices. The device provides a user with the capability of setting a SMB folder for the video clippings recorded by the device. It seems that the POST parameters passed in this request (to test if email credentials and hostname sent to…

  • CVE-2017-8408CriJul 2, 2019
    risk 0.64cvss 9.8epss 0.05

    An issue was discovered on D-Link DCS-1130 devices. The device provides a user with the capability of setting a SMB folder for the video clippings recorded by the device. It seems that the GET parameters passed in this request (to test if SMB credentials and hostname sent to the…

  • CVE-2017-18377CriJun 11, 2019
    risk 0.64cvss 9.8epss 0.07

    An issue was discovered on Wireless IP Camera (P2P) WIFICAM cameras. There is Command Injection in the set_ftp.cgi script via shell metacharacters in the pwd variable, as demonstrated by a set_ftp.cgi?svr=192.168.1.1&port=21&user=ftp URI.

  • CVE-2016-10760CriJun 11, 2019
    risk 0.64cvss 9.8epss 0.03

    On Seowon Intech routers, there is a Command Injection vulnerability in diagnostic.cgi via shell metacharacters in the ping_ipaddr parameter.

  • CVE-2019-5390CriJun 5, 2019
    risk 0.64cvss 9.8epss 0.04

    A remote command injection vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

  • CVE-2019-11217CriApr 24, 2019
    risk 0.64cvss 9.8epss 0.04

    The GitController in Jakub Chodounsky Bonobo Git Server before 6.5.0 allows execution of arbitrary commands in the context of the web server via a crafted http request.

  • CVE-2019-11076CriApr 23, 2019
    risk 0.64cvss 9.8epss 0.04

    Cribl UI 1.5.0 allows remote attackers to run arbitrary commands via an unauthenticated web request.

  • CVE-2019-6579CriApr 17, 2019
    risk 0.64cvss 9.8epss 0.02

    A vulnerability has been identified in Spectrum Power 4 (with Web Office Portal). An attacker with network access to the web server on port 80/TCP or 443/TCP could execute system commands with administrative privileges. The security vulnerability could be exploited by an…

  • CVE-2019-6552CriApr 5, 2019
    risk 0.64cvss 9.8epss 0.03

    Advantech WebAccess/SCADA, Versions 8.3.5 and prior. Multiple command injection vulnerabilities, caused by a lack of proper validation of user-supplied data, may allow remote code execution.

  • CVE-2019-5413CriMar 21, 2019
    risk 0.64cvss 9.8epss 0.03

    An attacker can use the format parameter to inject arbitrary commands in the npm package morgan < 1.9.1.

  • CVE-2018-17172CriJan 3, 2019
    risk 0.64cvss 9.8epss 0.02

    The web application on Xerox AltaLink B80xx before 100.008.028.05200, C8030/C8035 before 100.001.028.05200, C8045/C8055 before 100.002.028.05200, and C8070 before 100.003.028.05200 allows unauthenticated command injection.

  • CVE-2018-14746CriNov 28, 2018
    risk 0.64cvss 9.8epss 0.03

    Command Injection vulnerability in QTS 4.3.5 build 20181013, QTS 4.3.4 build 20181008, QTS 4.3.3 build 20180829, QTS 4.2.6 build 20180829 and earlier versions could allow remote attackers to run arbitrary commands on the NAS.

  • CVE-2018-16461CriOct 30, 2018
    risk 0.64cvss 9.8epss 0.04

    A command injection vulnerability in libnmapp package for versions <0.4.16 allows arbitrary commands to be executed via arguments to the range options.

  • CVE-2014-10075CriOct 5, 2018
    risk 0.64cvss 9.8epss 0.04

    The karo gem 2.3.8 for Ruby allows Remote command injection via the host field.

  • CVE-2018-0718CriSep 14, 2018
    risk 0.64cvss 9.8epss 0.02

    Command injection vulnerability in Music Station 5.1.2 and earlier versions in QNAP QTS 4.3.3 and 4.3.4 could allow remote attackers to run arbitrary commands in the compromised application.

  • CVE-2018-16460CriSep 7, 2018
    risk 0.64cvss 9.8epss 0.03

    A command Injection in ps package versions <1.0.0 for Node.js allowed arbitrary commands to be executed when attacker controls the PID.