VYPR

CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

BaseStableLikelihood: High

Description

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

Hierarchy (View 1000)

Parents

Children

none

Related attack patterns (CAPEC)

CAPEC-108 · CAPEC-15 · CAPEC-43 · CAPEC-6 · CAPEC-88

CVEs mapped to this weakness (6,475)

page 57 of 324
  • CVE-2022-30308CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.03

    In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-web-viewer-request-on" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control…

  • CVE-2021-42890CriJun 3, 2022
    risk 0.64cvss 9.8epss 0.02

    TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function NTPSyncWithHost of the file system.so which can control hostTime to attack.

  • CVE-2021-42888CriJun 3, 2022
    risk 0.64cvss 9.8epss 0.02

    TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setLanguageCfg of the file global.so which can control langType to attack.

  • CVE-2021-42885CriJun 3, 2022
    risk 0.64cvss 9.8epss 0.02

    TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setDeviceMac of the file global.so which can control deviceName to attack.

  • CVE-2021-42884CriJun 3, 2022
    risk 0.64cvss 9.8epss 0.02

    TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in function setDeviceName of the file global.so which can control thedeviceName to attack.

  • CVE-2021-42875CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.04

    TOTOLINK EX1200T V4.1.2cu.5215 contains a remote command injection vulnerability in the function setDiagnosisCfg of the file lib/cste_modules/system.so to control the ipDoamin.

  • CVE-2021-42872CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.07

    TOTOLINK EX1200T V4.1.2cu.5215 is affected by a command injection vulnerability that can remotely execute arbitrary code.

  • CVE-2021-34084CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.03

    OS command injection vulnerability in Turistforeningen node-s3-uploader through 2.0.3 for Node.js allows attackers to execute arbitrary commands via the metadata() function.

  • CVE-2021-34082CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.05

    OS Command Injection vulnerability in allenhwkim proctree through 0.1.1 and commit 0ac10ae575459457838f14e21d5996f2fa5c7593 for Node.js, allows attackers to execute arbitrary commands via the fix function.

  • CVE-2021-34080CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.03

    OS Command Injection vulnerability in es128 ssl-utils 1.0.0 for Node.js allows attackers to execute arbitrary commands via unsanitized shell metacharacters provided to the createCertRequest() and the createCert() functions.

  • CVE-2021-34079CriJun 2, 2022
    risk 0.64cvss 9.8epss 0.04

    OS Command injection vulnerability in Mintzo Docker-Tester through 1.2.1 allows attackers to execute arbitrary commands via shell metacharacters in the 'ports' entry of a crafted docker-compose.yml file.

  • CVE-2021-34111CriMay 20, 2022
    risk 0.64cvss 9.8epss 0.03

    Thecus 4800Eco was discovered to contain a command injection vulnerability via the username parameter in /adm/setmain.php.

  • CVE-2022-30105CriMay 18, 2022
    risk 0.64cvss 9.8epss 0.03

    In Belkin N300 Firmware 1.00.08, the script located at /setting_hidden.asp, which is accessible before and after configuring the device, exhibits multiple remote command injection vulnerabilities. The following parameters in the [form name] form; [list vulnerable parameters],…

  • CVE-2022-29516CriMay 18, 2022
    risk 0.64cvss 9.8epss 0.02

    The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), IPCOM EX2 NW(1100, 3200, 3500), IPCOM EX2 DC, IPCOM EX2 DC, IPCOM EX IN(2300, 2500, 2700), IPCOM EX LB(1100, 1300, 2300, 2500, 2700), IPCOM…

  • CVE-2022-1357CriMay 17, 2022
    risk 0.64cvss 9.8epss 0.02

    The affected On-Premise cnMaestro allows an unauthenticated attacker to access the cnMaestro server and execute arbitrary code in the privileges of the web server. This lack of validation could allow an attacker to append arbitrary data to the logger command.

  • CVE-2021-42897CriMay 16, 2022
    risk 0.64cvss 9.8epss 0.03

    A remote command execution (RCE) vulnerability was found in FeMiner wms V1.0 in /wms/src/system/datarec.php. The $_POST[r_name] is directly passed into the $mysqlstr and is executed by exec.

  • CVE-2022-29539CriMay 12, 2022
    risk 0.64cvss 9.8epss 0.02

    resi-calltrace in RESI Gemini-Net 4.2 is affected by OS Command Injection. It does not properly check the parameters sent as input before they are processed on the server. Due to the lack of validation of user input, an unauthenticated attacker can bypass the syntax intended by…

  • CVE-2022-28915CriMay 10, 2022
    risk 0.64cvss 9.8epss 0.07

    D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm.

  • CVE-2022-28913CriMay 10, 2022
    risk 0.64cvss 9.8epss 0.03

    TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUploadSetting.

  • CVE-2022-28912CriMay 10, 2022
    risk 0.64cvss 9.8epss 0.03

    TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUpgradeFW.