Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-74 (输出中的特殊元素转义处理不恰当(注入)) — Vulnerability Class 373

373 vulnerabilities classified as CWE-74 (输出中的特殊元素转义处理不恰当(注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2020-11060 Remote Code Execution in GLPI — GLPI 7.4 High2020-05-12
CVE-2020-7489 Schneider Electric EcoStruxure Machine Expert–Basic或SoMachine Basic 注入漏洞 — SoMachine Basic (all versions)EcoStruxure Machine Expert – Basic (all versions)Modicon M100 Logic Controller (all versions)Modicon M200 Logic Controller (all versions)Modicon M221 Logic Controller (all versions) 9.8 -2020-04-22
CVE-2020-11002 Remote Code Execution (RCE) vulnerability in dropwizard-validation — dropwizard 8.0 High2020-04-10
CVE-2020-7475 多款Schneider Electric产品注入漏洞 — EcoStruxure Control Expert (all versions prior to 14.1 Hot Fix), Unity Pro (all versions), Modicon M340 (all versions prior to V3.20), Modicon M580 (all versions prior to V3.10) 9.8 -2020-03-23
CVE-2020-5245 Remote Code Execution (RCE) vulnerability in dropwizard-validation — dropwizard-validation 7.9 High2020-02-24
CVE-2020-5219 Remote Code Execution in Angular Expressions — angular-expressions 8.7 High2020-01-24
CVE-2019-11275 CSV Injection in usage report downloaded from Pivotal Application Manager — Apps Manager 3.5 -2019-10-01
CVE-2019-1939 Cisco Webex Teams Logging Feature Command Execution Vulnerability — Cisco Webex Teams 8.8 -2019-09-05
CVE-2019-3562 Oculus Browser 跨站脚本漏洞 — Oculus Browser 6.1 -2019-04-29
CVE-2019-1680 Cisco Webex Business Suite Content Injection Vulnerability — Cisco Webex Business Suite 4.3 -2019-02-07
CVE-2018-18992 LCDS LAquis SCADA 注入漏洞 — LCDS Laquis SCADA 9.8 -2019-02-05
CVE-2018-18996 LCDS LAquis SCADA 安全漏洞 — LCDS Laquis SCADA 9.8 -2019-02-05
CVE-2017-16719 Moxa NPort 5110、5130和5150 安全漏洞 — Moxa NPort 5110, 5130, and 5150 7.5 -2017-11-16

Vulnerabilities classified as CWE-74 (输出中的特殊元素转义处理不恰当(注入)) represent 373 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.