Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2676

2676 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-22033 obs-service-download_url is vulnerable to argument injection — SUSE Package Hub 15 SP5 6.3 Medium2024-10-16
CVE-2024-9977 MitraStar GPT-2541GNAC Firewall Settings Page settings-firewall.cgi os command injection — GPT-2541GNAC 4.7 Medium2024-10-15
CVE-2024-9139 OS Command Injection in Restricted Command — EDR-8010 Series 7.2 High2024-10-14
CVE-2024-9916 HuangDou UTCMS cli.php os command injection — UTCMS 7.3 High2024-10-13
CVE-2024-9464 Expedition: Authenticated OS Command Injection Vulnerability Leads to Firewall Admin Credential Disclosure — Expedition 9.9AICriticalAI2024-10-09
CVE-2024-9463 Expedition: Unauthenticated OS Command Injection Vulnerability Leads to Firewall Credential Disclosure — Expedition 10.0AICriticalAI2024-10-09
CVE-2024-45720 Apache Subversion: Command line argument injection on Windows platforms — Apache Subversion 8.2 High2024-10-09
CVE-2024-21532 ggit 安全漏洞 — ggit 7.3 High2024-10-08
CVE-2024-8926 PHP CGI Parameter Injection Vulnerability (CVE-2024-4577 bypass) — PHP 8.1 High2024-10-08
CVE-2024-45252 Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') — Halo version 11.7.1.5 9.8 Critical2024-10-06
CVE-2024-45251 Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') — Halo version 11.7.1.5 9.8 Critical2024-10-06
CVE-2024-9054 Remote code Execution inTimeProvider® 4100 — TimeProvider 4100 8.8 -2024-10-04
CVE-2024-9441 Linear eMerge e3-Series Forgot Password Command Injection — eMerge e3-Series 9.8 Critical2024-10-02
CVE-2024-47608 Logicytics vulnerable to shell injections — Logicytics 9.8 -2024-10-01
CVE-2024-21531 git-shallow-clone 安全漏洞 — git-shallow-clone 5.3 Medium2024-10-01
CVE-2024-23924 Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability — Halo9 6.8 Medium2024-09-28
CVE-2024-23961 Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability — Halo9 6.8 Medium2024-09-28
CVE-2024-9166 OS Command Injection in Atelmo Atemio AM 520 HD Full HD Satellite Receiver — Atemio AM 520 HD Full HD Satellite Receiver 8.8AIHighAI2024-09-26
CVE-2024-9076 DedeCMS article_string_mix.php os command injection — DedeCMS 4.7 Medium2024-09-22
CVE-2024-9004 D-Link DAR-7000 Backup_Server_commit.php os command injection — DAR-7000 6.3 Medium2024-09-19
CVE-2024-9001 TOTOLINK T10 cstecgi.cgi setTracerouteCfg os command injection — T10 6.3 Medium2024-09-19
CVE-2024-8957 PTZOptics NDI and SDI Cameras Command Injection via NTP Address Configuration — PT30X-SDI 7.2 High2024-09-17
CVE-2024-45698 D-Link WiFi router - OS Command Injection — DIR-X4860 A1 9.8 Critical2024-09-16
CVE-2024-8869 TOTOLINK A720R exportOvpn os command injection — A720R 5.0 Medium2024-09-15
CVE-2024-8281 Lenovo XClarity Controller 安全漏洞 — HX5530 Appliance (ThinkAgile) XCC 7.2 High2024-09-13
CVE-2024-8280 Lenovo XClarity Controller 安全漏洞 — HX5530 Appliance (ThinkAgile) XCC 7.2 High2024-09-13
CVE-2024-8279 Lenovo XClarity Controller 安全漏洞 — HX5530 Appliance (ThinkAgile) XCC 7.2 High2024-09-13
CVE-2024-8278 Lenovo XClarity Controller 安全漏洞 — HX5530 Appliance (ThinkAgile) XCC 7.2 High2024-09-13
CVE-2024-20483 Cisco IOS XR PON Controller Command Injection Vulnerabilities — Cisco IOS XR Software 7.2 High2024-09-11
CVE-2024-20398 Cisco IOS XR Software Local Privilege Escalation Vulnerability — Cisco IOS XR Software 8.8 High2024-09-11

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2676 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.