VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (7,045)

page 151 of 353
  • CVE-2024-12333MedDec 12, 2024
    risk 0.42cvss 6.5epss 0.00

    The Woodmart theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 8.0.3. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode through the…

  • CVE-2024-48236MedOct 25, 2024
    risk 0.42cvss 6.5epss 0.01

    An issue in ofcms 1.1.2 allows a remote attacker to execute arbitrary code via the FileOutputStream function in the write String method of the ofcms-admin\src\main\java\com\ofsoft\cms\core\uitle\FileUtils.java file

  • CVE-2024-48235MedOct 25, 2024
    risk 0.42cvss 6.5epss 0.01

    An issue in ofcms 1.1.2 allows a remote attacker to execute arbitrary code via the save method of the TemplateController.java file.

  • CVE-2024-47879HigOct 24, 2024
    risk 0.42cvss 7.6epss 0.00

    OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, lack of cross-site request forgery protection on the `preview-expression` command means that visiting a malicious website could cause an attacker-controlled expression to be executed. The…

  • CVE-2024-48964HigOct 23, 2024
    risk 0.42cvss 7.5epss 0.00

    The package Snyk CLI before 1.1294.0 is vulnerable to Code Injection when scanning an untrusted Gradle project. The vulnerability can be triggered if Snyk test is run inside the untrusted project due to the improper handling of the current working directory name. Snyk recommends…

  • CVE-2024-43128MedAug 13, 2024
    risk 0.42cvss 6.5epss 0.00

    Improper Control of Generation of Code ('Code Injection') vulnerability in WC Product Table WooCommerce Product Table Lite allows Code Injection.This issue affects WooCommerce Product Table Lite: from n/a through 3.5.1.

  • CVE-2024-37405MedJul 12, 2024
    risk 0.42cvss 6.5epss 0.01

    Livechat messages can be leaked by combining two NoSQL injections affecting livechat:loginByToken (pre-authentication) and livechat:loadHistory.

  • CVE-2024-22020MedJul 9, 2024
    risk 0.42cvss 6.5epss 0.01

    A security flaw in Node.js allows a bypass of network import restrictions. By embedding non-network imports in data URLs, an attacker can execute arbitrary code, compromising system security. Verified on various platforms, the vulnerability is mitigated by forbidding data URLs…

  • CVE-2024-36075MedJun 27, 2024
    risk 0.42cvss 6.5epss 0.01

    The CoSoSys Endpoint Protector through 5.9.3 and Unify agent through 7.0.6 is susceptible to an arbitrary code execution vulnerability due to the way an archive obtained from the Endpoint Protector or Unify server is extracted on the endpoint. An attacker who is able to modify…

  • CVE-2024-5979HigJun 27, 2024
    risk 0.42cvss 7.5epss 0.01

    In h2oai/h2o-3 version 3.46.0, the `run_tool` command in the `rapids` component allows the `main` function of any class under the `water.tools` namespace to be called. One such class, `MojoConvertTool`, crashes the server when invoked with an invalid argument, causing a denial…

  • CVE-2024-4194MedJun 6, 2024
    risk 0.42cvss 6.5epss 0.00

    The The Album and Image Gallery plus Lightbox plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.0. This is due to the software allowing users to execute an action that does not properly validate a value before running…

  • CVE-2024-4037MedMay 24, 2024
    risk 0.42cvss 6.5epss 0.00

    The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 8.7.02.003. This is due to the plugin allowing unauthenticated users to execute an action that does not properly validate a value before running…

  • CVE-2024-4039MedMay 14, 2024
    risk 0.42cvss 6.5epss 0.01

    The The Orders Tracking for WooCommerce plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.2.10. This is due to the plugin allowing users to execute an action that does not properly validate a value before…

  • CVE-2024-4038MedMay 14, 2024
    risk 0.42cvss 6.5epss 0.00

    The The Back In Stock Notifier for WooCommerce | WooCommerce Waitlist Pro plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.3.1. This is due to the plugin for WordPress allowing users to execute an action…

  • CVE-2024-3957MedMay 2, 2024
    risk 0.42cvss 6.5epss 0.01

    The Booster for WooCommerce plugin is vulnerable to Unauthenticated Arbitrary Shortcode Execution in versions up to, and including, 7.1.8. This allows unauthenticated attackers to execute arbitrary shortcodes. The severity and exploitability depends on what other plugins are…

  • CVE-2024-3734MedMay 2, 2024
    risk 0.42cvss 6.5epss 0.01

    The FOX – Currency Switcher Professional for WooCommerce plugin is vulnerable to Unauthenticated Arbitrary Shortcode Execution in versions up to, and including, 1.4.1.8. This allows unauthenticated attackers to execute arbitrary shortcodes. The severity and exploitability…

  • CVE-2023-51770HigFeb 20, 2024
    risk 0.42cvss 7.5epss 0.01

    Arbitrary File Read Vulnerability in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1. We recommend users to upgrade Apache DolphinScheduler to version 3.2.1, which fixes the issue.

  • CVE-2023-37518MedJan 30, 2024
    risk 0.42cvss 6.4epss 0.00

    HCL BigFix ServiceNow is vulnerable to arbitrary code injection. A malicious authorized attacker could inject arbitrary code and execute within the context of the running user.

  • CVE-2023-6540MedJan 3, 2024
    risk 0.42cvss 6.5epss 0.01

    A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.

  • CVE-2023-49391HigDec 22, 2023
    risk 0.42cvss 7.5epss 0.01

    An issue was discovered in free5GC version 3.3.0, allows remote attackers to execute arbitrary code and cause a denial of service (DoS) on AMF component via crafted NGAP message.