VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (7,044)

page 136 of 353
  • CVE-2020-6248HigMay 12, 2020
    risk 0.47cvss 7.2epss 0.02

    SAP Adaptive Server Enterprise (Backup Server), version 16.0, does not perform the necessary validation checks for an authenticated user while executing DUMP or LOAD command allowing arbitrary code execution or Code Injection.

  • CVE-2019-18582HigMar 18, 2020
    risk 0.47cvss 7.2epss 0.05

    Dell EMC Data Protection Advisor versions 6.3, 6.4, 6.5, 18.2 versions prior to patch 83, and 19.1 versions prior to patch 71 contain a server-side template injection vulnerability in the REST API. A remote authenticated malicious user with administrative privileges may…

  • CVE-2020-10389HigMar 12, 2020
    risk 0.47cvss 7.2epss 0.05

    admin/save-settings.php in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by injecting PHP code into any POST parameter when saving global settings.

  • CVE-2019-3427HigNov 22, 2019
    risk 0.47cvss 7.2epss 0.01

    The version V6.01.03.01 of ZTE ZXCDN IAMWEB product is impacted by a code injection vulnerability. An attacker could exploit the vulnerability to inject malicious code into the management page, resulting in users’ information leakage.

  • CVE-2019-8231HigNov 6, 2019
    risk 0.47cvss 7.2epss 0.01

    In Magento to 1.9.4.3 and Magento prior to 1.14.4.3, an authenticated user with administrative privileges for editing attribute sets can execute arbitrary code through custom layout modification.

  • CVE-2019-8230HigNov 6, 2019
    risk 0.47cvss 7.2epss 0.01

    In Magentoprior to 1.9.4.3, and Magento prior to 1.14.4.3, an authenticated user with administrative privileges to edit configuration settings can execute arbitrary code through a crafted support/output path.

  • CVE-2019-17310HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Campaigns module by an Admin user.

  • CVE-2019-17309HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the EmailMan module by an Admin user.

  • CVE-2019-17307HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Tracker module by an Admin user.

  • CVE-2019-17306HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Configurator module by an Admin user.

  • CVE-2019-17304HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the MergeRecords module by an Admin user.

  • CVE-2019-17301HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the ModuleBuilder module by an Admin user.

  • CVE-2019-17299HigOct 7, 2019
    risk 0.47cvss 7.2epss 0.01

    SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Administration module by an Admin user.

  • CVE-2019-15087HigSep 20, 2019
    risk 0.47cvss 7.2epss 0.03

    An issue was discovered in PRiSE adAS 1.7.0. An authenticated user can change the function used to hash passwords to any function, leading to remote code execution.

  • CVE-2019-0355HigSep 10, 2019
    risk 0.47cvss 7.2epss 0.02

    SAP NetWeaver Application Server Java Web Container, ENGINEAPI (before versions 7.10, 7.20, 7.30, 7.31, 7.40, 7.50) and SAP-JEECOR (before versions 6.40, 7.0, 7.01), allows an attacker to inject code that can be executed by the application. An attacker could thereby control the…

  • CVE-2018-18573HigAug 22, 2019
    risk 0.47cvss 7.2epss 0.02

    osCommerce 2.3.4.1 has an incomplete '.htaccess' for blacklist filtering in the "product" page. Remote authenticated administrators can upload new '.htaccess' files (e.g., omitting .php) and subsequently achieve arbitrary PHP code execution via a…

  • CVE-2019-11376HigApr 20, 2019
    risk 0.47cvss 7.2epss 0.02

    SOY CMS v3.0.2 allows remote attackers to execute arbitrary PHP code via a <?php substring in the second text box. NOTE: the vendor indicates that there was an assumption that the content is "made editable on its own.

  • CVE-2017-18108HigMar 29, 2019
    risk 0.47cvss 7.2epss 0.02

    The administration SMTP configuration resource in Atlassian Crowd before version 2.10.2 allows remote attackers with administration rights to execute arbitrary code via a JNDI injection.

  • CVE-2019-10015HigMar 24, 2019
    risk 0.47cvss 7.2epss 0.02

    baigoStudio baigoSSO v3.0.1 allows remote attackers to execute arbitrary PHP code via the first form field of a configuration screen, because this code is written to the BG_SITE_NAME field in the opt_base.inc.php file.

  • CVE-2018-20775HigFeb 11, 2019
    risk 0.47cvss 7.2epss 0.02

    admin/?/plugin/file_manager in Frog CMS 0.9.5 allows PHP code execution by creating a new .php file containing PHP code, and then visiting this file under the public/ URI.