Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) — Vulnerability Class 1152

1152 vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2018-0433 Cisco SD-WAN Solution Command Injection Vulnerability — Cisco SD-WAN Solution 7.8 -2018-10-05
CVE-2018-0454 Cisco Cloud Services Platform 2100 Command Injection Vulnerability — Cisco Cloud Services Platform 2100 8.8 -2018-10-05
CVE-2018-0477 Cisco IOS XE Software Command Injection Vulnerabilities — Cisco IOS XE Software 6.7 -2018-10-05
CVE-2018-0481 Cisco IOS XE Software Command Injection Vulnerabilities — Cisco IOS XE Software 6.7 -2018-10-05
CVE-2018-16460 Joyent Node.js ps package 命令注入漏洞 — ps 9.8 -2018-09-07
CVE-2018-3786 egg-scripts 命令注入漏洞 — egg-scripts 9.8 -2018-08-24
CVE-2018-0427 Cisco Digital Network Architecture Center 命令注入漏洞 — Digital Network Architecture (DNA) Center 8.8 -2018-08-15
CVE-2018-3779 active-support ruby gem 安全漏洞 — active-support ruby gem 9.8 -2018-08-10
CVE-2018-9866 SonicWall Global Management System 安全漏洞 — Global Management System (GMS) 9.8 -2018-08-03
CVE-2016-8628 Ansible 命令注入漏洞 — Ansible 9.1 -2018-07-31
CVE-2018-3772 whereis npm模块安全漏洞 — whereis 9.8 -2018-07-30
CVE-2018-0344 Cisco SD-WAN Solution 命令注入漏洞 — Cisco SD-WAN Solution unknown 8.8 -2018-07-18
CVE-2018-0347 Cisco SD-WAN Solution Zero Touch Provisioning子系统命令注入漏洞 — Cisco SD-WAN Solution unknown 7.8 -2018-07-18
CVE-2018-0348 Cisco SD-WAN Solution 命令注入漏洞 — Cisco SD-WAN Solution unknown 8.8 -2018-07-18
CVE-2018-0350 Cisco SD-WAN Solution 命令注入漏洞 — Cisco SD-WAN Solution unknown 8.8 -2018-07-18
CVE-2018-0351 Cisco SD-WAN Solution 命令注入漏洞 — Cisco SD-WAN Solution unknown 7.8 -2018-07-18
CVE-2018-0341 Cisco IP Phone 6800、7800和8800系列命令注入漏洞 — Cisco IP Phone 6800, 7800, and 8800 unknown 8.8 -2018-07-16
CVE-2016-6558 The ASUS RP-AC52 access point, firmware version 1.0.1.1s and possibly earlier, is vulnerable to command injection — RP-AC52 Access Point 9.8 -2018-07-13
CVE-2018-12465 Remote Code Execution in Micro Focus Secure Messaging Gateway — Secure Messaging Gateway 7.2 -2018-06-29
CVE-2011-4182 shell code injection via ESSID because of missing escaping of a variable — sysconfig 9.8 -2018-06-12
CVE-2017-12075 Synology DiskStation Manager EZ-Internet 命令注入漏洞 — DiskStation Manager (DSM) 8.8 -2018-06-08
CVE-2017-12078 Synology Router Manager EZ-Internet 命令注入漏洞 — Synology Router Manager (SRM) 8.8 -2018-06-08
CVE-2018-3746 pdfinfojs NPM模块命令注入漏洞 — pdfinfojs 9.8 -2018-06-01
CVE-2018-1111 Red Hat Enterprise Linux 命令注入漏洞 — dhcp 7.5 -2018-05-17
CVE-2018-0324 Cisco Enterprise NFV Infrastructure Software CLI 命令注入漏洞 — Cisco Enterprise NFV Infrastructure Software 6.7 -2018-05-17
CVE-2017-0915 GitLab Community Edition 安全漏洞 — GitLab Community and Enterprise Editions 8.8 -2018-03-21
CVE-2017-0916 GitLab Community Edition 安全漏洞 — GitLab Community and Enterprise Editions 9.8 -2018-03-21
CVE-2018-0217 Cisco ASR 5000 Series Aggregation Services Routers StarOS操作系统CLI 命令注入漏洞 — Cisco StarOS 6.7 -2018-03-08
CVE-2018-0224 Cisco ASR 5000 Series Aggregation Services Routers StarOS操作系统命令注入漏洞 — Cisco StarOS 6.7 -2018-03-08
CVE-2018-5439 Nortek Linear eMerge E3 series 命令注入漏洞 — Nortek Linear eMerge E3 Series 9.8 -2018-02-19

Vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) represent 1152 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.