VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (6,979)

page 37 of 349
  • CVE-2022-44038CriNov 29, 2022
    risk 0.64cvss 9.8epss 0.02

    Russound XSourcePlayer 777D v06.08.03 was discovered to contain a remote code execution vulnerability via the scriptRunner.cgi component.

  • CVE-2022-41705CriNov 25, 2022
    risk 0.64cvss 9.8epss 0.02

    Badaso version 2.6.3 allows an unauthenticated remote attacker to execute arbitrary code remotely on the server. This is possible because the application does not properly validate the data uploaded by users.

  • CVE-2022-45132CriNov 18, 2022
    risk 0.64cvss 9.8epss 0.02

    In Linaro Automated Validation Architecture (LAVA) before 2022.11.1, remote code execution can be achieved through user-submitted Jinja2 template. The REST API endpoint for validating device configuration files in lava-server loads input as a Jinja2 template in a way that can be…

  • CVE-2022-44089CriNov 10, 2022
    risk 0.64cvss 9.8epss 0.01

    ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component IS_GETCACHE.

  • CVE-2022-44087CriNov 10, 2022
    risk 0.64cvss 9.8epss 0.01

    ESPCMS P8.21120101 was discovered to contain a remote code execution (RCE) vulnerability in the component UPFILE_PIC_ZOOM_HIGHT.

  • CVE-2022-31691CriNov 4, 2022
    risk 0.64cvss 9.8epss 0.02

    Spring Tools 4 for Eclipse version 4.16.0 and below as well as VSCode extensions such as Spring Boot Tools, Concourse CI Pipeline Editor, Bosh Editor and Cloudfoundry Manifest YML Support version 1.39.0 and below all use Snakeyaml library for YAML editing support. This library…

  • CVE-2020-21016CriOct 31, 2022
    risk 0.64cvss 9.8epss 0.02

    D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary code as root via HNAP1/control/SetGuestWLanSettings.php.

  • CVE-2022-40628CriSep 23, 2022
    risk 0.64cvss 9.8epss 0.02

    This vulnerability exists in Tacitine Firewall, all versions of EN6200-PRIME QUAD-35 and EN6200-PRIME QUAD-100 between 19.1.1 to 22.20.1 (inclusive), due to improper control of code generation in the Tacitine Firewall web-based management interface. An unauthenticated remote…

  • CVE-2022-41138CriSep 20, 2022
    risk 0.64cvss 9.8epss 0.02

    In Zutty before 0.13, DECRQSS in text written to the terminal can achieve arbitrary code execution.

  • CVE-2022-31860CriSep 6, 2022
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in OpenRemote through 1.0.4 allows attackers to execute arbitrary code via a crafted Groovy rule.

  • CVE-2022-25644CriAug 29, 2022
    risk 0.64cvss 9.8epss 0.01

    All versions of package @pendo324/get-process-by-name are vulnerable to Arbitrary Code Execution due to improper sanitization of getProcessByName function.

  • CVE-2022-37053CriAug 28, 2022
    risk 0.64cvss 9.8epss 0.02

    TRENDnet TEW733GR v1.03B01 is vulnerable to Command injection via /htdocs/upnpinc/gena.php.

  • CVE-2022-36756CriAug 28, 2022
    risk 0.64cvss 9.8epss 0.03

    DIR845L A1 v1.00-v1.03 is vulnerable to command injection via /htdocs/upnpinc/gena.php.

  • CVE-2022-38078CriAug 24, 2022
    risk 0.64cvss 9.8epss 0.02

    Movable Type XMLRPC API provided by Six Apart Ltd. contains a command injection vulnerability. Sending a specially crafted message by POST method to Movable Type XMLRPC API may allow arbitrary Perl script execution, and an arbitrary OS command may be executed through it.…

  • CVE-2022-35516CriAug 17, 2022
    risk 0.64cvss 9.8epss 0.03

    DedeCMS v5.7.93 - v5.7.96 was discovered to contain a remote code execution vulnerability in login.php.

  • CVE-2022-36262CriAug 15, 2022
    risk 0.64cvss 9.8epss 0.02

    An issue was discovered in taocms 3.0.2. in the website settings that allows arbitrary php code to be injected by modifying config.php.

  • CVE-2022-30083CriJul 30, 2022
    risk 0.64cvss 9.8epss 0.01

    EllieGrid Android Application version 3.4.1 is vulnerable to Code Injection. The application appears to evaluate user input as code (remote).

  • CVE-2022-34113CriJul 22, 2022
    risk 0.64cvss 9.8epss 0.01

    An issue in the component /api/plugin/upload of Dataease v1.11.1 allows attackers to execute arbitrary code via a crafted plugin.

  • CVE-2022-0885CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.09

    The Member Hero WordPress plugin through 1.0.9 lacks authorization checks, and does not validate the a request parameter in an AJAX action, allowing unauthenticated users to call arbitrary PHP functions with no arguments.

  • CVE-2022-24817CriMay 6, 2022
    risk 0.64cvss 9.9epss 0.01

    Flux2 is an open and extensible continuous delivery solution for Kubernetes. Flux2 versions between 0.1.0 and 0.29.0, helm-controller 0.1.0 to v0.19.0, and kustomize-controller 0.1.0 to v0.23.0 are vulnerable to Code Injection via malicious Kubeconfig. In multi-tenancy…