Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) — Vulnerability Class 1157

1157 vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-4329 json-logic-js logic.js command injection — json-logic-js 5.5 Medium2023-03-05
CVE-2023-1162 DrayTek Vigor 2960 Web Management Interface mainfunction.cgi command injection — Vigor 2960 7.2 High2023-03-03
CVE-2021-3855 Command Injection in Liman Central Management System — Liman Central Management System 8.8 High2023-02-24
CVE-2023-23917 Rocket.Chat 安全漏洞 — Rocket.chat 8.8 -2023-02-23
CVE-2023-25805 versionn Command Injection Vulnerability — versionn 9.8 Critical2023-02-20
CVE-2023-20075 Cisco Secure Email 操作系统命令注入漏洞 — Cisco Secure Email 6.0 Medium2023-02-16
CVE-2023-0861 Authenticated Command Injection in NetModule NSRW — NSRW 7.2 High2023-02-16
CVE-2023-0849 Netgear WNDR3700v2 Web Interface command injection — WNDR3700v2 4.7 Medium2023-02-15
CVE-2023-21778 Microsoft Dynamics Unified Service Desk Remote Code Execution Vulnerability — Microsoft Dynamics 365 Unified Service Desk 8.0 High2023-02-14
CVE-2023-21805 Windows MSHTML Platform Remote Code Execution Vulnerability — Windows 10 Version 1809 7.8 High2023-02-14
CVE-2023-0789 Command Injection in thorsten/phpmyfaq — thorsten/phpmyfaq 8.1 High2023-02-12
CVE-2022-45104 部分Dell产品 操作系统命令注入漏洞 — Unisphere for PowerMax vApp 8.8 High2023-02-10
CVE-2023-0649 dst-admin sendBroadcast command injection — dst-admin 6.3 Medium2023-02-02
CVE-2023-0648 dst-admin masterConsole command injection — dst-admin 6.3 Medium2023-02-02
CVE-2023-0647 dst-admin kickPlayer command injection — dst-admin 6.3 Medium2023-02-02
CVE-2023-0646 dst-admin cavesConsole command injection — dst-admin 6.3 Medium2023-02-02
CVE-2023-0640 TRENDnet TEW-652BRP Web Interface ping.ccp command injection — TEW-652BRP 7.2 High2023-02-02
CVE-2023-0638 TRENDnet TEW-811DRU Web Interface command injection — TEW-811DRU 7.2 High2023-02-02
CVE-2023-22657 F5OS vulnerability — F5OS-A 7.0 High2023-02-01
CVE-2023-0611 TRENDnet TEW-652BRP Web Management Interface get_set.ccp command injection — TEW-652BRP 8.8 High2023-02-01
CVE-2022-45095 Dell PowerScale OneFS 命令注入漏洞 — PowerScale OneFS 6.7 Medium2023-02-01
CVE-2021-41231 OpenMage LTS DataFlow upload remote code execution vulnerability — magento-lts 7.2 High2023-01-27
CVE-2021-41144 OpenMage LTS authenticated remote code execution through layout update — magento-lts 8.8 High2023-01-27
CVE-2021-41143 OpenMage LTS arbitrary file deletion in customer media allows for remote code execution — magento-lts 7.2 High2023-01-27
CVE-2021-39217 OpenMage LTS arbitrary command execution in custom layout update through blocks — magento-lts 7.2 High2023-01-27
CVE-2023-22884 Apache Airflow, Apache Airflow MySQL Provider: Arbitrary file read via MySQL provider in Apache Airflow — Apache Airflow 9.8 -2023-01-21
CVE-2023-20045 Cisco RV160和RV260 输入验证错误漏洞 — Cisco Small Business RV Series Router Firmware 4.9 Medium2023-01-19
CVE-2023-20026 Cisco Small Business RV016 输入验证错误漏洞 — Cisco Small Business RV Series Router Firmware 6.5 Medium2023-01-19
CVE-2023-0315 Command Injection in froxlor/froxlor — froxlor/froxlor 8.8 -2023-01-16
CVE-2022-4616 Delta Electronics DX-3021 命令注入漏洞 — 4G Router DX-3021 7.2 High2023-01-12

Vulnerabilities classified as CWE-77 (在命令中使用的特殊元素转义处理不恰当(命令注入)) represent 1157 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.