VYPR

CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

ClassDraftLikelihood: High

Description

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-136 · CAPEC-15 · CAPEC-183 · CAPEC-248 · CAPEC-40 · CAPEC-43 · CAPEC-75 · CAPEC-76

CVEs mapped to this weakness (3,816)

page 8 of 191
  • CVE-2023-47253CriNov 6, 2023
    risk 0.65cvss 9.8epss 0.14

    Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html/ad/adpesquisasql/request/processVariavel.php gridValoresPopHidden parameter.

  • CVE-2023-46370CriOct 25, 2023
    risk 0.65cvss 9.8epss 0.18

    Tenda W18E V16.01.0.8(1576) has a command injection vulnerability via the hostName parameter in the formSetNetCheckTools function.

  • CVE-2023-45852CriOct 14, 2023
    risk 0.65cvss 9.8epss 0.14

    In Vitogate 300 2.1.3.0, /cgi-bin/vitogate.cgi allows an unauthenticated attacker to bypass authentication and execute arbitrary commands via shell metacharacters in the ipaddr params JSON data for the put method.

  • CVE-2023-33831CriSep 18, 2023
    risk 0.65cvss 9.8epss 0.14

    A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute arbitrary commands via a crafted POST request.

  • CVE-2023-25911CriJun 11, 2023
    risk 0.65cvss 9.9epss 0.02

    The Danfoss AK-EM100 web applications allow for an authenticated user to perform OS command injection through the web application parameters.

  • CVE-2023-33532CriJun 6, 2023
    risk 0.65cvss 9.8epss 0.16

    There is a command injection vulnerability in the Netgear R6250 router with Firmware Version 1.0.4.48. If an attacker gains web management privileges, they can inject commands into the post request parameters, thereby gaining shell privileges.

  • CVE-2022-46642CriDec 23, 2022
    risk 0.65cvss 9.9epss 0.03

    D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the auto_upgrade_hour parameter in the SetAutoUpgradeInfo function.

  • CVE-2022-46641CriDec 23, 2022
    risk 0.65cvss 9.9epss 0.03

    D-Link DIR-846 A1_FW100A43 was discovered to contain a command injection vulnerability via the lan(0)_dhcps_staticlist parameter in the SetIpMacBindSettings function.

  • CVE-2022-41800HigDec 7, 2022
    risk 0.65cvss 8.7epss 0.66

    In all versions of BIG-IP, when running in Appliance mode, an authenticated user assigned the Administrator role may be able to bypass Appliance mode restrictions, utilizing an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a security…

  • CVE-2021-26729CriOct 24, 2022
    risk 0.65cvss 10.0epss 0.02

    Command injection and multiple stack-based buffer overflows vulnerabilities in the Login_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard…

  • CVE-2021-26728CriOct 24, 2022
    risk 0.65cvss 10.0epss 0.02

    Command injection and stack-based buffer overflow vulnerabilities in the KillDupUsr_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard firmware…

  • CVE-2021-26727CriOct 24, 2022
    risk 0.65cvss 10.0epss 0.02

    Multiple command injections and stack-based buffer overflows vulnerabilities in the SubNet_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A…

  • CVE-2022-21941CriAug 31, 2022
    risk 0.65cvss 10.0epss 0.02

    All versions of iSTAR Ultra prior to version 6.8.9.CU01 are vulnerable to a command injection that could allow an unauthenticated user root access to the system.

  • CVE-2022-32449CriJul 7, 2022
    risk 0.65cvss 9.8epss 0.19

    TOTOLINK EX300_V2 V4.0.3c.7484 was discovered to contain a command injection vulnerability via the langType parameter in the setLanguageCfg function. This vulnerability is exploitable via a crafted MQTT data packet.

  • CVE-2022-31874CriJun 17, 2022
    risk 0.65cvss 9.8epss 0.19

    ASUS RT-N53 3.0.0.4.376.3754 has a command injection vulnerability in the SystemCmd parameter of the apply.cgi interface.

  • CVE-2021-32933CriApr 1, 2022
    risk 0.65cvss 10.0epss 0.01

    An attacker could leverage an API to pass along a malicious file that could then manipulate the process creation command line in MDT AutoSave versions prior to v6.02.06 and run a command line argument. This could then be leveraged to run a malicious process.

  • CVE-2022-26187CriMar 22, 2022
    risk 0.65cvss 9.8epss 0.20

    TOTOLINK N600R V4.3.0cu.7570_B20200620 was discovered to contain a command injection vulnerability via the pingCheck function.

  • CVE-2022-24144CriFeb 4, 2022
    risk 0.65cvss 9.8epss 0.19

    Tenda AX3 v16.03.12.10_CN was discovered to contain a command injection vulnerability in the function WanParameterSetting. This vulnerability allows attackers to execute arbitrary commands via the gateway, dns1, and dns2 parameters.

  • CVE-2021-45630CriDec 26, 2021
    risk 0.65cvss 10.0epss 0.02

    Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, RBS750 before 3.2.17.12, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, and…

  • CVE-2021-27449CriDec 21, 2021
    risk 0.65cvss 9.9epss 0.03

    Mesa Labs AmegaView Versions 3.0 and prior has a command injection vulnerability that can be exploited to execute commands in the web server.