VYPR

CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-15 · CAPEC-43 · CAPEC-6 · CAPEC-88

CVEs mapped to this weakness (6,578)

page 145 of 329
  • CVE-2022-28572HigMay 2, 2022
    risk 0.57cvss 8.8epss 0.03

    Tenda AX1806 v1.0.0.1 was discovered to contain a command injection vulnerability in `SetIPv6Status` function

  • CVE-2022-24437CriMay 1, 2022
    risk 0.57cvss 9.8epss 0.04

    The package git-pull-or-clone before 2.0.2 are vulnerable to Command Injection due to the use of the --upload-pack feature of git which is also supported for git clone. The source includes the use of the secure child process API spawn(). However, the outpath parameter passed to…

  • CVE-2022-29937HigApr 29, 2022
    risk 0.57cvss 8.8epss 0.01

    USU Oracle Optimization before 5.17.5 allows authenticated DataCollection users to achieve agent root access because some common OS commands are blocked but (for example) an OS command for base64 decoding is not blocked. NOTE: this is not an Oracle Corporation product.

  • CVE-2021-34602HigApr 27, 2022
    risk 0.57cvss 8.8epss 0.01

    In Bender/ebee Charge Controllers in multiple versions are prone to Command injection via Web interface. An authenticated attacker could enter shell commands into some input fields that are executed with root privileges.

  • CVE-2022-1440CriApr 22, 2022
    risk 0.57cvss 9.8epss 0.04

    Command Injection vulnerability in [email protected] in GitHub repository yarkeev/git-interface prior to 2.1.2. If both are provided by user input, then the use of a `--upload-pack` command-line argument feature of git is also supported for `git clone`, which would then allow…

  • CVE-2022-0999HigApr 11, 2022
    risk 0.57cvss 8.8epss 0.01

    An authenticated user may be able to misuse parameters to inject arbitrary operating system commands into mySCADA myPRO versions 8.25.0 and prior.

  • CVE-2022-26670HigApr 7, 2022
    risk 0.57cvss 8.8epss 0.02

    D-Link DIR-878 has inadequate filtering for special characters in the webpage input field. An unauthenticated LAN attacker can perform command injection attack to execute arbitrary system commands to control the system or disrupt service.

  • CVE-2022-25597HigApr 7, 2022
    risk 0.57cvss 8.8epss 0.01

    ASUS RT-AC86U’s LPD service has insufficient filtering for special characters in the user request, which allows an unauthenticated LAN attacker to perform command injection attack, execute arbitrary commands and disrupt or terminate service.

  • CVE-2020-27373HigApr 7, 2022
    risk 0.57cvss 8.8epss 0.01

    Dr Trust USA iCheck Connect BP Monitor BP Testing 118 1.2.1 is vulnerable to Plain text command over BLE.

  • CVE-2022-22986HigMar 31, 2022
    risk 0.57cvss 8.8epss 0.01

    Netcommunity OG410X and OG810X series (Netcommunity OG410Xa, OG410Xi, OG810Xa, and OG810Xi firmware Ver.2.28 and earlier) allow an attacker on the adjacent network to execute an arbitrary OS command via a specially crafted config file.

  • CVE-2022-27947HigMar 26, 2022
    risk 0.57cvss 8.8epss 0.03

    NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via shell metacharacters in the ipv6_fix.cgi ipv6_wan_ipaddr, ipv6_lan_ipaddr, ipv6_wan_length, or ipv6_lan_length parameter.

  • CVE-2022-27946HigMar 26, 2022
    risk 0.57cvss 8.8epss 0.03

    NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via shell metacharacters in the sysNewPasswd and sysConfirmPasswd parameters to admin_account.cgi.

  • CVE-2022-27945HigMar 26, 2022
    risk 0.57cvss 8.8epss 0.03

    NETGEAR R8500 1.0.2.158 devices allow remote authenticated users to execute arbitrary commands (such as telnetd) via shell metacharacters in the sysNewPasswd and sysConfirmPasswd parameters to password.cgi.

  • CVE-2022-1030HigMar 23, 2022
    risk 0.57cvss 8.8epss 0.01

    Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target host where the user has…

  • CVE-2022-24193CriMar 10, 2022
    risk 0.57cvss 9.8epss 0.05

    CasaOS before v0.2.7 was discovered to contain a command injection vulnerability.

  • CVE-2022-0841CriMar 3, 2022
    risk 0.57cvss 9.8epss 0.03

    OS Command Injection in GitHub repository ljharb/npm-lockfile in v2.0.3 and v2.0.4.

  • CVE-2022-24720CriMar 1, 2022
    risk 0.57cvss 9.8epss 0.03

    image_processing is an image processing wrapper for libvips and ImageMagick/GraphicsMagick. Prior to version 1.12.2, using the `#apply` method from image_processing to apply a series of operations that are coming from unsanitized user input allows the attacker to execute shell…

  • CVE-2021-43075HigMar 1, 2022
    risk 0.57cvss 8.8epss 0.02

    A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.2 and below, version 8.5.2 and below, version 8.4.2 and below, version 8.3.2 and below allows attacker to execute unauthorized code or commands via…

  • CVE-2021-4029HigFeb 24, 2022
    risk 0.57cvss 8.8epss 0.01

    A command injection vulnerability in the CGI program of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execute arbitrary OS commands via a LAN interface.

  • CVE-2021-26726HigFeb 16, 2022
    risk 0.57cvss 8.8epss 0.01

    A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to execute commands with SYSTEM privileges This issue affects: Valmet DNA versions from Collection 2012 until Collection 2021.