Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) — Vulnerability Class 1152

1152 vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2026-3854 Remote code execution via git push option injection in GitHub Enterprise Server — Enterprise Server 8.8AIHighAI2026-03-10
CVE-2026-3798 Comfast CF-AC100 Request Path mbox-config sub_44AC14 command injection — CF-AC100 4.7 Medium2026-03-09
CVE-2026-3704 Wavlink NU516U1 Incomplete Fix CVE-2025-10959 firewall.cgi sub_405B2C command injection — NU516U1 4.7 Medium2026-03-08
CVE-2026-3680 RyuzakiShinji biome-mcp-server biome-mcp-server.ts command injection — biome-mcp-server 6.3 Medium2026-03-07
CVE-2026-3662 Wavlink WL-NU516U1 adm.cgi usb_p910 command injection — WL-NU516U1 4.7 Medium2026-03-07
CVE-2026-3661 Wavlink WL-NU516U1 adm.cgi ota_new_upgrade command injection — WL-NU516U1 4.7 Medium2026-03-07
CVE-2026-3612 Wavlink WL-NU516U1 OTA Online Upgrade adm.cgi sub_405AF4 command injection — WL-NU516U1 7.2 High2026-03-06
CVE-2026-3484 PhialsBasement nmap-mcp-server Nmap CLI index.ts child_process.exec command injection — nmap-mcp-server 6.3 Medium2026-03-03
CVE-2025-33181 IBM MQ 安全漏洞 — Cumulus Linux GA 7.3 High2026-02-24
CVE-2025-33180 NVIDIA Cumulus Linux和NVIDIA NVOS 命令注入漏洞 — Cumulus Linux GA 8.0 High2026-02-24
CVE-2026-3066 HummerRisk Cloud Compliance Scanning PlatformUtils.java fixedCommand command injection — HummerRisk 6.3 Medium2026-02-24
CVE-2026-3065 HummerRisk Cloud Task Dry-run CloudTaskService.java CommandUtils.commonExecCmdWithResult command injection — HummerRisk 6.3 Medium2026-02-24
CVE-2026-3064 HummerRisk Cloud Task Scheduler ResourceCreateService.java command injection — HummerRisk 6.3 Medium2026-02-24
CVE-2026-2956 qinming99 dst-admin restore revertBackup command injection — dst-admin 6.3 Medium2026-02-22
CVE-2026-26093 Improper Neutralization of Special Elements used in a Command ('Command Injection') in Owl opds — opds 9.8AICriticalAI2026-02-20
CVE-2026-2333 Improper Neutralization of Special Elements used in a Command ('Command Injection') in Owl opds — opds 9.8AICriticalAI2026-02-20
CVE-2026-20761 EnOcean SmartServer IoT Command Injection — SmartServer IoT 8.1 High2026-02-20
CVE-2026-2824 Comfast CF-E7 webmggnt mbox-config sub_441CF4 command injection — CF-E7 6.3 Medium2026-02-20
CVE-2026-2823 Comfast CF-E7 webmggnt mbox-config sub_41ACCC command injection — CF-E7 6.3 Medium2026-02-20
CVE-2026-27001 OpenClaw: Unsanitized CWD path injection into LLM prompts — openclaw 7.6 -2026-02-19
CVE-2025-33249 NVIDIA Nemo Framework 命令注入漏洞 — NeMo Framework 7.8 High2026-02-18
CVE-2025-33246 NVIDIA Nemo Framework 命令注入漏洞 — NeMo Framework 7.8 High2026-02-18
CVE-2026-22284 Dell SmartFabric OS10 Software 命令注入漏洞 — SmartFabric OS10 Software 6.6 Medium2026-02-17
CVE-2026-2615 Wavlink WL-NU516U1 firewall.cgi singlePortForwardDelete command injection — WL-NU516U1 7.2 High2026-02-17
CVE-2026-2548 WAYOS FBM-220G rc sub_40F820 command injection — FBM-220G 6.3 Medium2026-02-16
CVE-2026-2537 Comfast CF-E4 HTTP POST Request mbox-config command injection — CF-E4 4.7 Medium2026-02-16
CVE-2026-2535 Comfast CF-N1 V2 mbox-config sub_44AB9C command injection — CF-N1 V2 6.3 Medium2026-02-16
CVE-2026-2534 Comfast CF-N1 V2 mbox-config sub_44AC4C command injection — CF-N1 V2 6.3 Medium2026-02-16
CVE-2026-2533 Tosei Self-service Washing Machine tosei_datasend.php command injection — Self-service Washing Machine 7.3 High2026-02-16
CVE-2026-2530 Wavlink WL-WN579A3 wireless.cgi AddMac command injection — WL-WN579A3 6.3 Medium2026-02-16

Vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) represent 1152 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.