Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2669

2669 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-5446 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_checkCredentialsByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5445 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_checkFWByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5444 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_UpgradeFWByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5443 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 wirelessAdvancedHidden os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5442 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_pingGatewayByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5441 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 setDeviceURL os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5440 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 NTP os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5439 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 verifyFacebookLike os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-41385 Uchida Yoko wivia 操作系统命令注入漏洞 — wivia 5 7.2AIHighAI2025-05-30
CVE-2025-48047 MICI Network Co. Ltd. NetFax Server Command Injection — NetFax Server 8.8AIHighAI2025-05-29
CVE-2025-5277 aws-mcp-server 安全漏洞 — aws-mcp-server 9.6 Critical2025-05-28
CVE-2025-1753 Command Injection in LLama-Index CLI in run-llama/llama_index — run-llama/llama_index 8.8AIHighAI2025-05-28
CVE-2025-5106 Fujian Kelixun Filename fax_view.php os command injection — Kelixun 7.3 High2025-05-23
CVE-2023-34873 MOBOTIX P3 Cameras 安全漏洞 — P3 8.8 -2025-05-23
CVE-2025-47780 cli_permissions.conf: deny option does not work for disallowing shell commands — asterisk 8.8AIHighAI2025-05-22
CVE-2025-3883 eCharge Hardy Barth cPH2 index.php Command Injection Remote Code Execution Vulnerability — cPH2 8.8AIHighAI2025-05-22
CVE-2025-3882 eCharge Hardy Barth cPH2 nwcheckexec.php dest Command Injection Remote Code Execution Vulnerability — cPH2 8.8AIHighAI2025-05-22
CVE-2025-3881 eCharge Hardy Barth cPH2 check_req.php ntp Command Injection Remote Code Execution Vulnerability — cPH2 8.8AIHighAI2025-05-22
CVE-2025-48069 ejson2env has insufficient input sanitization — ejson2env 6.6 Medium2025-05-21
CVE-2025-5030 Ackites KillWxapkg wxapkg File Parser unpack.go processFile os command injection — KillWxapkg 5.0 Medium2025-05-21
CVE-2025-27804 OS Command Injection Vulnerability in eCharge Hardy Barth cPH2 / cPP2 charging stations — cPH2 / cPP2 charging stations 9.8AICriticalAI2025-05-21
CVE-2025-48204 TYPO3 安全漏洞 — ns backup extension 6.8 Medium2025-05-21
CVE-2025-41225 VMware vCenter Server authenticated command-execution vulnerability — vCenter Server 8.8 High2025-05-20
CVE-2025-32002 I-O Data HDL-T 操作系统命令注入漏洞 — HDL-TC1 9.8 Critical2025-05-15
CVE-2025-47782 motionEye vulnerable to RCE in add_camera Function Due to unsafe command execution — motioneye 7.2AIHighAI2025-05-14
CVE-2025-24022 iTop server vulnerable to portal code injection — iTop 8.6 High2025-05-14
CVE-2025-43562 ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) — ColdFusion 9.1 Critical2025-05-13
CVE-2025-40582 Siemens SCALANCE LPE9403 操作系统命令注入漏洞 — SCALANCE LPE9403 7.8 High2025-05-13
CVE-2025-26389 Siemens OZW672 操作系统命令注入漏洞 — OZW672 10.0 Critical2025-05-13
CVE-2025-20194 Cisco IOS XE 操作系统命令注入漏洞 — Cisco IOS XE Software 5.4 Medium2025-05-07

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2669 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.