VYPR

CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-15 · CAPEC-43 · CAPEC-6 · CAPEC-88

CVEs mapped to this weakness (6,524)

page 101 of 327
  • CVE-2024-2353HigMar 10, 2024
    risk 0.58cvss 8.8epss 0.04

    A vulnerability, which was classified as critical, has been found in Totolink X6000R 9.4.0cu.852_20230719. This issue affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component shttpd. The manipulation of the argument ip leads to os command injection.…

  • CVE-2023-4249HigNov 8, 2023
    risk 0.58cvss 8.8epss 0.10

    Zavio CF7500, CF7300, CF7201, CF7501, CB3211, CB3212, CB5220, CB6231, B8520, B8220, and CD321 IP Cameras with firmware version M2.1.6.05 has a command injection vulnerability in their implementation of their binaries and handling of network requests.

  • CVE-2023-22653HigJul 6, 2023
    risk 0.58cvss 8.8epss 0.06

    An OS command injection vulnerability exists in the vtysh_ubus tcpdump_start_cb functionality of Milesight UR32L v32.3.0.5. A specially crafted HTTP request can lead to command execution. An authenticated attacker can send an HTTP request to trigger this vulnerability.

  • CVE-2023-2574HigMay 8, 2023
    risk 0.58cvss 8.8epss 0.05

    Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the device name input field, which can be triggered by authenticated users via a crafted POST request.

  • CVE-2023-2573HigMay 8, 2023
    risk 0.58cvss 8.8epss 0.05

    Advantech EKI-1524, EKI-1522, EKI-1521 devices through 1.21 are affected by an command injection vulnerability in the NTP server input field, which can be triggered by authenticated users via a crafted POST request.

  • CVE-2023-2479CriMay 2, 2023
    risk 0.58cvss 9.8epss 0.22

    OS Command Injection in GitHub repository appium/appium-desktop prior to v1.22.3-4.

  • CVE-2023-28528HigApr 28, 2023
    risk 0.58cvss 8.4epss 0.01

    IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands. IBM X-Force ID: 251207.

  • CVE-2023-28716HigApr 27, 2023
    risk 0.58cvss 8.8epss 0.04

    mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.

  • CVE-2022-40969HigJan 26, 2023
    risk 0.58cvss 8.8epss 0.06

    An os command injection vulnerability exists in the httpd delfile.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

  • CVE-2022-40220HigJan 26, 2023
    risk 0.58cvss 8.8epss 0.04

    An OS command injection vulnerability exists in the httpd txt/restore.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability.

  • CVE-2022-38066HigJan 26, 2023
    risk 0.58cvss 8.8epss 0.07

    An OS command injection vulnerability exists in the httpd SNMP functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP response can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.

  • CVE-2023-23596HigJan 20, 2023
    risk 0.58cvss 8.8epss 0.15

    jc21 NGINX Proxy Manager through 2.9.19 allows OS command injection. When creating an access list, the backend builds an htpasswd file with crafted username and/or password input that is concatenated without any validation, and is directly passed to the exec command, potentially…

  • CVE-2022-45915HigDec 7, 2022
    risk 0.58cvss 8.8epss 0.05

    ILIAS before 7.16 allows OS Command Injection.

  • CVE-2022-32586HigOct 25, 2022
    risk 0.58cvss 8.8epss 0.04

    An OS command injection vulnerability exists in the web interface /action/ipcamRecordPost functionality of Abode Systems, Inc. iota All-In-One Security Kit 6.9X and 6.9Z. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an…

  • CVE-2022-30603HigOct 25, 2022
    risk 0.58cvss 8.8epss 0.06

    An OS command injection vulnerability exists in the web interface /action/iperf functionality of Abode Systems, Inc. iota All-In-One Security Kit 6.9X and 6.9Z. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP…

  • CVE-2022-37129HigAug 31, 2022
    risk 0.58cvss 8.8epss 0.08

    D-Link DIR-816 A2_v1.10CNB04.img is vulnerable to Command Injection via /goform/SystemCommand. After the user passes in the command parameter, it will be spliced into byte_4836B0 by snprintf, and finally doSystem(&byte_4836B0); will be executed, resulting in a command injection.

  • CVE-2022-34527HigJul 29, 2022
    risk 0.58cvss 8.8epss 0.04

    D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160.

  • CVE-2022-2487HigJul 20, 2022
    risk 0.58cvss 8.0epss 0.80

    A vulnerability has been found in WAVLINK WN535K2 and WN535K3 and classified as critical. This vulnerability affects unknown code of the file /cgi-bin/nightled.cgi. The manipulation of the argument start_hour leads to os command injection. The exploit has been disclosed to the…

  • CVE-2022-1703HigJun 8, 2022
    risk 0.58cvss 8.8epss 0.12

    Improper neutralization of special elements in the SonicWall SSL-VPN SMA100 series management interface allows a remote authenticated attacker to inject OS Commands which potentially leads to remote command execution vulnerability or denial of service (DoS) attack.

  • CVE-2022-31245HigMay 20, 2022
    risk 0.58cvss 8.8epss 0.05

    mailcow before 2022-05d allows a remote authenticated user to inject OS commands and escalate privileges to domain admin via the --debug option in conjunction with the ---PIPEMESS option in Sync Jobs.