VYPR

CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

ClassDraftLikelihood: High

Description

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-136 · CAPEC-15 · CAPEC-183 · CAPEC-248 · CAPEC-40 · CAPEC-43 · CAPEC-75 · CAPEC-76

CVEs mapped to this weakness (3,835)

page 87 of 192
  • CVE-2024-43027HigAug 21, 2024
    risk 0.52cvss 8.0epss 0.01

    DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek Vigor 300B before v1.5.1.5_Beta were discovered to contain a command injection vulnerability via the action parameter at cgi-bin/mainfunction.cgi.

  • CVE-2024-39963HigJul 19, 2024
    risk 0.52cvss 8.0epss 0.02

    AX3000 Dual-Band Gigabit Wi-Fi 6 Router AX9 V22.03.01.46 and AX3000 Dual-Band Gigabit Wi-Fi 6 Router AX12 V1.0 V22.03.01.46 were discovered to contain an authenticated remote command execution (RCE) vulnerability via the macFilterType parameter at /goform/setMacFilterCfg.

  • CVE-2024-36983HigJul 1, 2024
    risk 0.52cvss 8.0epss 0.01

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authenticated user could use this internal…

  • CVE-2024-32355HigMay 14, 2024
    risk 0.52cvss 8.0epss 0.02

    TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'password' parameter in the setSSServer function.

  • CVE-2024-33788HigMay 6, 2024
    risk 0.52cvss 8.0epss 0.02

    Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the PinCode parameter at /API/info form endpoint.

  • CVE-2023-42128HigMay 3, 2024
    risk 0.52cvss 8.0epss 0.01

    Magnet Forensics AXIOM Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Magnet Forensics AXIOM. User interaction is required to exploit this vulnerability in that…

  • CVE-2024-31811HigApr 8, 2024
    risk 0.52cvss 8.0epss 0.01

    TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the langType parameter in the setLanguageCfg function.

  • CVE-2024-30572HigApr 3, 2024
    risk 0.52cvss 8.0epss 0.01

    Netgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the ntp_server parameter.

  • CVE-2024-25951HigMar 9, 2024
    risk 0.52cvss 8.0epss 0.01

    A command injection vulnerability exists in local RACADM. A malicious authenticated user could gain control of the underlying operating system.

  • CVE-2024-1354HigFeb 13, 2024
    risk 0.52cvss 8.0epss 0.02

    A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via the `syslog-ng` configuration file. Exploitation of this vulnerability required…

  • CVE-2024-20676HigJan 9, 2024
    risk 0.52cvss 8.0epss 0.03

    Azure Storage Mover Remote Code Execution Vulnerability

  • CVE-2023-41031HigSep 22, 2023
    risk 0.52cvss 8.0epss 0.02

    Command injection in homemng.htm in Juplink RX4-1500 versions V1.0.2, V1.0.3, V1.0.4, and V1.0.5 allows remote authenticated attackers to execute commands via specially crafted requests to the vulnerable endpoint.

  • CVE-2023-41029HigSep 22, 2023
    risk 0.52cvss 8.0epss 0.02

    Command injection vulnerability in the homemng.htm endpoint in Juplink RX4-1500 Wifi router firmware versions V1.0.2, V1.0.3, V1.0.4, and V1.0.5 allows authenticated remote attackers to execute commands as root via specially crafted HTTP requests to the vulnerable…

  • CVE-2023-37568HigJul 13, 2023
    risk 0.52cvss 8.0epss 0.00

    ELECOM wireless LAN routers WRC-1167GHBK-S v1.03 and earlier, and WRC-1167GEBK-S v1.03 and earlier allow a network-adjacent authenticated attacker to execute an arbitrary command by sending a specially crafted request to the web management page.

  • CVE-2023-37566HigJul 13, 2023
    risk 0.52cvss 8.0epss 0.01

    Command injection vulnerability in ELECOM and LOGITEC wireless LAN routers allows a network-adjacent authenticated attacker to execute an arbitrary command by sending a specially crafted request to the web management page. Affected products and versions are as follows:…

  • CVE-2022-24630HigMay 29, 2023
    risk 0.52cvss 7.2epss 0.24

    An issue was discovered in AudioCodes Device Manager Express through 7.8.20002.47752. BrowseFiles.php allows a ?cmd=ssh POST request with an ssh_command field that is executed.

  • CVE-2023-21778HigFeb 14, 2023
    risk 0.52cvss 8.0epss 0.01

    Microsoft Dynamics Unified Service Desk Remote Code Execution Vulnerability

  • CVE-2021-42538HigOct 22, 2021
    risk 0.52cvss 8.0epss 0.01

    The affected product is vulnerable to a parameter injection via passphrase, which enables the attacker to supply uncontrolled input.

  • CVE-2020-7848HigFeb 17, 2021
    risk 0.52cvss 8.0epss 0.01

    The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. To exploit this vulnerability, an attacker can send a GET request that executes arbitrary OS commands via cookie value.

  • CVE-2015-7982criSep 1, 2020
    risk 0.52cvss epss 0.01

    Versions of `gm` prior to 1.21.1 are affected by a command injection vulnerability. The vulnerability is triggered when user input is passed into `gm.compare()`, which fails to sanitize input correctly before calling the graphics magic binary. ## Recommendation Update to…