Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) — Vulnerability Class 1153

1153 vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-35932 jcvi vulnerable to Configuration Injection due to unsanitized user input — jcvi 7.1 High2023-06-23
CVE-2023-26429 Open-Xchange OX App Suite 命令注入漏洞 — OX App Suite 3.5 Low2023-06-20
CVE-2023-33919 Siemens CP-8031 MASTER MODULE 命令注入漏洞 — CP-8031 MASTER MODULE 7.2 High2023-06-13
CVE-2023-25911 Authenticated OS Command Injection in Danfoss AK-EM100 — AK-EM100 9.9 Critical2023-06-11
CVE-2023-34230 Snowflake Connector vulnerable to Command Injection — snowflake-connector-net 7.3 High2023-06-08
CVE-2023-34233 Snowflake Python Connector vulnerable to Command Injection — snowflake-connector-python 8.0 -2023-06-08
CVE-2023-34232 Snowflake NodeJS Driver vulnerable to Command Injection — snowflake-connector-nodejs 7.3 High2023-06-08
CVE-2023-34231 Snowflake Golang Driver vulnerable to Command Injection — gosnowflake 8.0 -2023-06-08
CVE-2023-0636 Remote Code Execution via Command Injection — ASPECT®-Enterprise 7.2 High2023-06-05
CVE-2022-46361 Physical access to the WDM enables use of USB device to gain access to the WDM — OneWireless 6.9 Medium2023-05-30
CVE-2023-34153 ImageMagick 命令注入漏洞 — ImageMagick 9.8 -2023-05-30
CVE-2023-33235 MXsecurity Command Injection Vulnerability — MXsecurity Series 7.2 High2023-05-22
CVE-2023-2491 Red Hat Enterprise Linux 命令注入漏洞 — emacs 7.8 -2023-05-17
CVE-2023-32073 AVideo command injection vulnerability — AVideo 8.8 High2023-05-12
CVE-2023-2682 Caton Live Mini_HTTPD ping.cgi command injection — Live 6.3 Medium2023-05-12
CVE-2023-2649 Tenda AC23 Service Port 7329 ate command injection — AC23 7.2 High2023-05-11
CVE-2023-2647 Weaver E-Office File Upload utility_all.php command injection — E-Office 6.3 Medium2023-05-11
CVE-2022-29842 Command Injection Vulnerability in Western Digital My Cloud devices — My Cloud OS 5 9.8 Critical2023-05-10
CVE-2023-28832 Siemens SIMATIC Cloud Connect 命令注入漏洞 — SIMATIC Cloud Connect 7 CC712 7.2 High2023-05-09
CVE-2023-27407 Siemens SCALANCE 命令注入漏洞 — SCALANCE LPE9403 9.9 Critical2023-05-09
CVE-2023-2520 Caton Prime Ping command injection — Prime 8.8 High2023-05-04
CVE-2023-32007 Apache Spark: Shell command injection via Spark UI — Apache Spark 8.8 -2023-05-02
CVE-2023-2378 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2023-2377 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2023-2376 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2023-2375 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2023-2374 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2023-2373 Ubiquiti EdgeRouter X Web Management Interface command injection — EdgeRouter X 6.3 Medium2023-04-28
CVE-2022-36769 IBM Cloud Pak for Data file upload — Cloud Pak for Data 7.2 High2023-04-26
CVE-2023-30623 Arbitrary command injection in embano1/wip — wip 8.8 High2023-04-24

Vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) represent 1153 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.