VYPR

CWE-94

Improper Control of Generation of Code ('Code Injection')

BaseDraftLikelihood: Medium

Description

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-242 · CAPEC-35 · CAPEC-77

CVEs mapped to this weakness (6,984)

page 80 of 350
  • CVE-2023-29210CriApr 15, 2023
    risk 0.57cvss 9.9epss 0.01

    XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on commonly accessible documents including the notification preferences macros can execute arbitrary Groovy, Python or Velocity code in XWiki leading to full access…

  • CVE-2023-29209CriApr 15, 2023
    risk 0.57cvss 9.9epss 0.01

    XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on commonly accessible documents including the legacy notification activity macro can execute arbitrary Groovy, Python or Velocity code in XWiki leading to full…

  • CVE-2023-28706CriApr 7, 2023
    risk 0.57cvss 9.8epss 0.03

    Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Software Foundation Apache Airflow Hive Provider.This issue affects Apache Airflow Hive Provider: before 6.0.0.

  • CVE-2023-26817HigApr 7, 2023
    risk 0.57cvss 8.8epss 0.01

    codefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component /controllers/api/user.php.

  • CVE-2023-26119CriApr 3, 2023
    risk 0.57cvss 9.8epss 0.03

    Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.

  • CVE-2023-28333CriMar 23, 2023
    risk 0.57cvss 9.8epss 0.01

    The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).

  • CVE-2023-1306HigMar 21, 2023
    risk 0.57cvss 8.8epss 0.01

    An authenticated attacker can leverage an exposed resource.db() accessor method to smuggle Python method calls via a Jinja template, which can lead to code execution. This issue was resolved in the Managed and SaaS deployments on February 1, 2023, and in version 23.2.1 of the…

  • CVE-2023-1304HigMar 21, 2023
    risk 0.57cvss 8.8epss 0.01

    An authenticated attacker can leverage an exposed getattr() method via a Jinja template to smuggle OS commands and perform other actions that are normally expected to be private methods. This issue was resolved in the Managed and SaaS deployments on February 1, 2023, and in…

  • CVE-2023-27893HigMar 14, 2023
    risk 0.57cvss 8.8epss 0.01

    An attacker authenticated as a user with a non-administrative role and a common remote execution authorization in SAP Solution Manager and ABAP managed systems (ST-PI) - versions 2088_1_700, 2008_1_710, 740, can use a vulnerable interface to execute an application function to…

  • CVE-2023-0089HigMar 8, 2023
    risk 0.57cvss 8.8epss 0.01

    The webutils in Proofpoint Enterprise Protection (PPS/POD) contain a vulnerability that allows an authenticated user to execute remote code through 'eval injection'. This affects all versions 8.20.0 and below.

  • CVE-2023-23496HigFeb 27, 2023
    risk 0.57cvss 8.8epss 0.01

    The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.2, watchOS 9.3, iOS 15.7.2 and iPadOS 15.7.2, Safari 16.3, tvOS 16.3, iOS 16.3 and iPadOS 16.3. Processing maliciously crafted web content may lead to arbitrary code execution.

  • CVE-2022-36231CriFeb 23, 2023
    risk 0.57cvss 9.8epss 0.03

    pdf_info 0.5.3 is vulnerable to Command Execution because the Ruby code uses backticks instead of Open3.

  • CVE-2023-23912HigFeb 9, 2023
    risk 0.57cvss 8.8epss 0.01

    A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allows a malicious actor directly connected to the WAN interface…

  • CVE-2022-45928HigJan 18, 2023
    risk 0.57cvss 8.8epss 0.02

    A remote OScript execution issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). Multiple endpoints allow the user to pass the parameter htmlFile, which is included in the HTML output rendering pipeline of a request. Because the Content Server evaluates…

  • CVE-2022-34456HigJan 18, 2023
    risk 0.57cvss 8.8epss 0.01

    Dell EMC Metro node, Version(s) prior to 7.1, contain a Code Injection Vulnerability. An authenticated nonprivileged attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application.

  • CVE-2023-22731CriJan 17, 2023
    risk 0.57cvss 9.9epss 0.01

    Shopware is an open source commerce platform based on Symfony Framework and Vue js. In a Twig environment **without the Sandbox extension**, it is possible to refer to PHP functions in twig filters like `map`, `filter`, `sort`. This allows a template to call any global PHP…

  • CVE-2023-22853HigJan 14, 2023
    risk 0.57cvss 8.8epss 0.01

    Tiki before 24.1, when feature_create_webhelp is enabled, allows lib/structures/structlib.php PHP Object Injection because of an eval.

  • CVE-2022-46874HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious extension in its place. This could potentially led to user confusion and the execution of malicious code.*Note*: This issue was originally included in the…

  • CVE-2022-22756HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    If a user was convinced to drag and drop an image to their desktop or other folder, the resulting object could have been changed into an executable script which would have run arbitrary code after the user clicked on it. This vulnerability affects Firefox < 97, Thunderbird <…

  • CVE-2022-46101HigDec 22, 2022
    risk 0.57cvss 8.8epss 0.01

    AyaCMS v3.1.2 was found to have a code flaw in the ust_sql.inc.php file, which allows attackers to cause command execution by inserting malicious code.