VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (7,044)

page 135 of 353
  • CVE-2021-43281HigNov 4, 2021
    risk 0.47cvss 7.2epss 0.01

    MyBB before 1.8.29 allows Remote Code Injection by an admin with the "Can manage settings?" permission. The Admin CP's Settings management module does not validate setting types correctly on insertion and update, making it possible to add settings of supported type "php" with…

  • CVE-2021-25877HigNov 1, 2021
    risk 0.47cvss 7.2epss 0.02

    AVideo/YouPHPTube 10.0 and prior is affected by Insecure file write. An administrator privileged user is able to write files on filesystem using flag and code variables in file save.php.

  • CVE-2021-41619HigOct 27, 2021
    risk 0.47cvss 7.2epss 0.03

    An issue was discovered in Gradle Enterprise before 2021.1.2. There is potential remote code execution via the application startup configuration. The installation configuration user interface (available to administrators) allows specifying arbitrary Java Virtual Machine startup…

  • CVE-2021-39402HigSep 20, 2021
    risk 0.47cvss 7.2epss 0.01

    MaianAffiliate v.1.0 is suffers from code injection by adding a new product via the admin panel. The injected payload is reflected on the affiliate main page for all authenticated and unauthenticated visitors.

  • CVE-2021-39128HigSep 16, 2021
    risk 0.47cvss 7.2epss 0.02

    Affected versions of Atlassian Jira Server or Data Center using the Jira Service Management addon allow remote attackers with JIRA Administrators access to execute arbitrary Java code via a server-side template injection vulnerability in the Email Template feature. The affected…

  • CVE-2021-39503HigSep 7, 2021
    risk 0.47cvss 7.2epss 0.03

    PHPMyWind 5.6 is vulnerable to Remote Code Execution. Becase input is filtered without "<, >, ?, =, `,...." In WriteConfig() function, an attacker can inject php code to /include/config.cache.php file.

  • CVE-2021-39115HigSep 1, 2021
    risk 0.47cvss 7.2epss 0.04

    Affected versions of Atlassian Jira Service Management Server and Data Center allow remote attackers with "Jira Administrators" access to execute arbitrary Java code or run arbitrary system commands via a Server_Side Template Injection vulnerability in the Email Template…

  • CVE-2020-19822HigAug 26, 2021
    risk 0.47cvss 7.2epss 0.03

    A remote code execution (RCE) vulnerability in template_user.php of ZZCMS version 2018 allows attackers to execute arbitrary PHP code via the "ml" and "title" parameters.

  • CVE-2021-37626HigAug 11, 2021
    risk 0.47cvss 7.2epss 0.01

    Contao is an open source CMS that allows you to create websites and scalable web applications. In affected versions it is possible to load PHP files by entering insert tags in the Contao back end. Installations are only affected if they have untrusted back end users who have the…

  • CVE-2021-24430HigAug 2, 2021
    risk 0.47cvss 7.2epss 0.02

    The Speed Booster Pack ⚡ PageSpeed Optimization Suite WordPress plugin before 4.2.0 did not validate its caching_exclude_urls and caching_include_query_strings settings before outputting them in a PHP file, which could lead to RCE

  • CVE-2021-24312HigJun 1, 2021
    risk 0.47cvss 7.2epss 0.02

    The parameters $cache_path, $wp_cache_debug_ip, $wp_super_cache_front_page_text, $cache_scheduled_time, $cached_direct_pages used in the settings of WP Super Cache WordPress plugin before 1.7.3 result in RCE because they allow input of '$' and '\n'. This is due to an incomplete…

  • CVE-2021-27811HigMay 21, 2021
    risk 0.47cvss 7.2epss 0.01

    A code injection vulnerability has been discovered in the Upgrade function of QibosoftX1 v1.0. An attacker is able execute arbitrary PHP code via exploitation of client_upgrade_edition.php and Upgrade.php.

  • CVE-2021-3273HigFeb 25, 2021
    risk 0.47cvss 7.2epss 0.07

    Nagios XI below 5.7 is affected by code injection in the /nagiosxi/admin/graphtemplates.php component. To exploit this vulnerability, someone must have an admin user account in Nagios XI's web system.

  • CVE-2020-35734HigFeb 15, 2021
    risk 0.47cvss 7.2epss 0.07

    Sruu.pl in Batflat 1.3.6 allows an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Users tab. To exploit this, one must login to the administration panel and edit an arbitrary user's data (username, displayed…

  • CVE-2021-25251HigFeb 10, 2021
    risk 0.47cvss 7.2epss 0.02

    The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's password protection and disable protection. An attacker must already have administrator privileges on the…

  • CVE-2021-20187HigJan 28, 2021
    risk 0.47cvss 7.2epss 0.02

    It was found in Moodle before version 3.10.1, 3.9.4, 3.8.7 and 3.5.16 that it was possible for site administrators to execute arbitrary PHP scripts via a PHP include used during Shibboleth authentication.

  • CVE-2020-7777HigNov 23, 2020
    risk 0.47cvss 7.2epss 0.02

    This affects all versions of package jsen. If an attacker can control the schema file, it could run arbitrary JavaScript code on the victim machine. In the module description and README file there is no mention about the risks of untrusted schema files, so I assume that this is…

  • CVE-2019-7177HigSep 25, 2020
    risk 0.47cvss 7.2epss 0.01

    Pexip Infinity before 20.1 allows Code Injection onto nodes via an admin.

  • CVE-2020-6318HigSep 9, 2020
    risk 0.47cvss 7.2epss 0.06

    A Remote Code Execution vulnerability exists in the SAP NetWeaver (ABAP Server, up to release 7.40) and ABAP Platform (> release 7.40).Because of this, an attacker can exploit these products via Code Injection, and potentially enabling to take complete control of the products,…

  • CVE-2020-7013HigJun 3, 2020
    risk 0.47cvss 7.2epss 0.02

    Kibana versions before 6.8.9 and 7.7.0 contain a prototype pollution flaw in TSVB. An authenticated attacker with privileges to create TSVB visualizations could insert data that would cause Kibana to execute arbitrary code. This could possibly lead to an attacker executing code…