VYPR

CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-15 · CAPEC-43 · CAPEC-6 · CAPEC-88

CVEs mapped to this weakness (6,524)

page 229 of 327
  • CVE-2023-34420HigJun 26, 2023
    risk 0.47cvss 7.2epss 0.01

    A valid, authenticated LXCA user with elevated privileges may be able to execute command injections through crafted calls to a specific web API.

  • CVE-2022-32752HigJun 15, 2023
    risk 0.47cvss 7.2epss 0.01

    IBM Security Directory Suite VA 8.0.1 through 8.0.1.19 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 228439.

  • CVE-2023-31198HigJun 13, 2023
    risk 0.47cvss 7.2epss 0.01

    OS command injection vulnerability exists in Wi-Fi AP UNIT allows. If this vulnerability is exploited, a remote authenticated attacker with an administrative privilege to execute an arbitrary OS command. Affected products and versions are as follows: AC-PD-WAPU v1.05_B04 and…

  • CVE-2023-34343HigJun 12, 2023
    risk 0.47cvss 7.2epss 0.01

    AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, or data tampering.

  • CVE-2023-34334HigJun 12, 2023
    risk 0.47cvss 7.2epss 0.01

    AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, or data tampering.  

  • CVE-2022-47616HigJun 2, 2023
    risk 0.47cvss 7.2epss 0.01

    Hitron CODA-5310 has insufficient filtering for specific parameters in the connection test function. A remote attacker authenticated as an administrator, can use the management page to perform command injection attacks, to execute arbitrary system command, manipulate system or…

  • CVE-2023-27988HigMay 30, 2023
    risk 0.47cvss 7.2epss 0.01

    The post-authentication command injection vulnerability in the Zyxel NAS326 firmware versions prior to V5.21(AAZF.13)C0 could allow an authenticated attacker with administrator privileges to execute some operating system (OS) commands on an affected device remotely.

  • CVE-2023-33617HigMay 23, 2023
    risk 0.47cvss 7.2epss 0.05

    An OS Command Injection vulnerability in Parks Fiberlink 210 firmware version V2.1.14_X000 was found via the /boaform/admin/formPing target_addr parameter.

  • CVE-2023-28392HigMay 23, 2023
    risk 0.47cvss 7.2epss 0.01

    Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_B04P and earlier, AC-WAPU-300 v1.00_B07 and earlier, AC-WAPU-300-P v1.00_B08P and earlier, AC-WAPUM-300 v1.00_B07 and earlier, and…

  • CVE-2023-32568HigMay 10, 2023
    risk 0.47cvss 7.2epss 0.01

    An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The VIOM web application does not validate user-supplied data and appends it to OS commands and internal binaries used by the application. An attacker with…

  • CVE-2023-28742HigMay 3, 2023
    risk 0.47cvss 7.2epss 0.01

    When DNS is provisioned, an authenticated remote command execution vulnerability exists in DNS iQuery mesh. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

  • CVE-2023-25507HigApr 22, 2023
    risk 0.47cvss 7.2epss 0.01

    NVIDIA DGX-1 BMC contains a vulnerability in the SPX REST API, where an attacker with the appropriate level of authorization can inject arbitrary shell commands, which may lead to code execution, denial of service, information disclosure, and data tampering.

  • CVE-2023-28102HigMar 27, 2023
    risk 0.47cvss 8.3epss 0.03

    discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely constructs a shell string using the file parameter, which can potentially leave clients of discordrb vulnerable to command injection. The library…

  • CVE-2023-24841HigMar 27, 2023
    risk 0.47cvss 7.2epss 0.01

    HGiga MailSherlock query function for connection log has a vulnerability of insufficient filtering for user input. An authenticated remote attacker with administrator privilege can exploit this vulnerability to inject and execute arbitrary system commands to perform arbitrary…

  • CVE-2022-39951HigMar 7, 2023
    risk 0.47cvss 7.2epss 0.02

    A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.3.6 through 6.3.20, FortiWeb 6.4 all versions allows attacker to execute unauthorized code or commands via…

  • CVE-2023-26213HigMar 3, 2023
    risk 0.47cvss 7.2epss 0.08

    On Barracuda CloudGen WAN Private Edge Gateway devices before 8 webui-sdwan-1089-8.3.1-174141891, an OS command injection vulnerability exists in /ajax/update_certificate - a crafted HTTP request allows an authenticated attacker to execute arbitrary commands. For example, a name…

  • CVE-2022-27489HigFeb 16, 2023
    risk 0.47cvss 7.2epss 0.01

    A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiExtender 7.0.0 through 7.0.3, 5.3.2, 4.2.4 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.

  • CVE-2023-20076HigFeb 12, 2023
    risk 0.47cvss 7.2epss 0.02

    A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execute arbitrary commands as root on the underlying host operating system. This vulnerability is due to incomplete sanitization of parameters that are passed in for…

  • CVE-2022-34447HigFeb 11, 2023
    risk 0.47cvss 7.2epss 0.02

    PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains OS Command Injection vulnerability. An authenticated remote attacker with administrative privileges could potentially exploit the issue and execute commands on the system as the root user.

  • CVE-2022-38547HigFeb 7, 2023
    risk 0.47cvss 7.2epss 0.03

    A post-authentication command injection vulnerability in the CLI command of Zyxel ZyWALL/USG series firmware versions 4.20 through 4.72, VPN series firmware versions 4.30 through 5.32, USG FLEX series firmware versions 4.50 through 5.32, and ATP series firmware versions 4.32…