Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) — Vulnerability Class 1153

1153 vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-2727 H3C Magic NX30 Pro HTTP POST Request getNetworkStatus command injection — Magic NX30 Pro 8.0 High2025-03-25
CVE-2025-2726 H3C Magic BE18000 HTTP POST Request esps command injection — Magic NX15 8.0 High2025-03-25
CVE-2025-2725 H3C Magic BE18000 HTTP POST Request auth command injection — Magic NX15 8.0 High2025-03-25
CVE-2024-8156 Command Injection in significant-gravitas/autogpt — significant-gravitas/autogpt 8.8 -2025-03-20
CVE-2025-22472 Dell SmartFabric OS10 命令注入漏洞 — SmartFabric OS10 Software 7.8 High2025-03-17
CVE-2025-22473 Dell SmartFabric OS10 命令注入漏洞 — SmartFabric OS10 Software 7.8 High2025-03-17
CVE-2024-48017 Dell SmartFabric OS10 命令注入漏洞 — SmartFabric OS10 Software 6.5 Medium2025-03-17
CVE-2024-48015 Dell SmartFabric OS10 命令注入漏洞 — SmartFabric OS10 Software 6.7 Medium2025-03-17
CVE-2024-48830 Dell SmartFabric OS10 命令注入漏洞 — SmartFabric OS10 Software 7.8 High2025-03-17
CVE-2024-12992 Remote Code Execution leads to Command Injection — Pandora FMS 9.8 -2025-03-17
CVE-2024-12971 QuickShell Authenticated Command Injection — Pandora FMS 9.8 -2025-03-17
CVE-2023-33300 Fortinet FortiNAC 安全漏洞 — FortiNAC 4.8 Medium2025-03-14
CVE-2024-46662 Fortinet FortiManager和Fortinet FortiManager Cloud 命令注入漏洞 — FortiManager 8.3 High2025-03-14
CVE-2024-8402 Improper Neutralization of Special Elements used in a Command ('Command Injection') in GitLab — GitLab 3.7 Low2025-03-13
CVE-2024-13871 Unauthenticated Command Injection in Bitdefender BOX v1 — BOX v1 8.8 -2025-03-12
CVE-2025-26627 Azure Arc Installer Elevation of Privilege Vulnerability — Azure ARC 7.0 High2025-03-11
CVE-2025-24049 Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability — Azure CLI 8.4 High2025-03-11
CVE-2024-53700 QHora — QuRouter 7.2 -2025-03-07
CVE-2024-53692 QTS, QuTS hero — QTS 7.2 -2025-03-07
CVE-2025-26331 Dell ThinOS 命令注入漏洞 — Wyse Proprietary OS (Modern ThinOS) 7.8 High2025-03-07
CVE-2025-1947 hzmanyun Education and Training System UploadImageController.java scorm command injection — Education and Training System 6.3 Medium2025-03-04
CVE-2025-1946 hzmanyun Education and Training System exportPDF command injection — Education and Training System 6.3 Medium2025-03-04
CVE-2025-27423 Improper Input Validation in Vim — vim 7.1 High2025-03-03
CVE-2025-1845 ESAFENET DSM examExportPDF command injection — DSM 6.3 Medium2025-03-03
CVE-2025-1800 D-Link DAR-7000 HTTP POST Request sxh_vpnlic.php get_ip_addr_details command injection — DAR-7000 6.3 Medium2025-03-01
CVE-2025-20117 Cisco Application Policy Infrastructure Controller Authenticated Command Injection Vulnerability — Cisco Application Policy Infrastructure Controller (APIC) 5.1 Medium2025-02-26
CVE-2025-27146 Matrix IRC Bridge allows IRC command injection to own puppeted user — matrix-appservice-irc 2.7 Low2025-02-25
CVE-2025-1448 Synway SMG Gateway Management Software 9-12ping.php command injection — SMG Gateway Management Software 7.3 High2025-02-19
CVE-2025-1338 NUUO Camera handle_config.php print_file command injection — Camera 7.3 High2025-02-16
CVE-2025-0593 SICK Lector8xx and InspectorP8xx vulnerable for code execution — SICK Lector8xx 8.8 High2025-02-14

Vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) represent 1153 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.