Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2682

2682 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-25946 Dell vApp Manager 操作系统命令注入漏洞 — Virtual Appliance (vApp) Manager 7.2 High2024-03-28
CVE-2023-6437 Authenticated RCE — TP-Link EX20v AX1800, Tp-Link Archer C5v AC1200, Tp-Link TD-W9970, Tp-Link TD-W9970v3, TP-Link VX220-G2u, TP-Link VN020-G2u 9.8 Critical2024-03-28
CVE-2024-28015 NEC Corporation Aterm 安全漏洞 — WG1800HP4 7.8AIHighAI2024-03-28
CVE-2024-2910 Ruijie RG-EG350 HTTP POST Request vpnAction os command injection — RG-EG350 6.3 Medium2024-03-26
CVE-2024-2909 Ruijie RG-EG350 HTTP POST Request setAction os command injection — RG-EG350 8.8 High2024-03-26
CVE-2024-2897 Tenda AC7 WriteFacMac formWriteFacMac os command injection — AC7 6.3 Medium2024-03-26
CVE-2024-29189 ansys-geometry-core OS Command Injection vulnerability — pyansys-geometry 7.4 High2024-03-26
CVE-2024-25002 Bosch Synchronizer 安全漏洞 — Network Synchronizer Enterprise 8.8 High2024-03-25
CVE-2024-24892 Unauthorized RCE in migration-tools — migration-tools 8.1 High2024-03-25
CVE-2024-24899 Command injection in aops-zeus — aops-zeus 7.2 High2024-03-25
CVE-2024-24890 Command injection in ioprobe of gala-gopher — gala-gopher 7.8 High2024-03-25
CVE-2024-2854 Tenda AC18 setsambacfg formSetSambaConf os command injection — AC18 6.3 Medium2024-03-24
CVE-2024-2853 Tenda AC10U setsambacfg formSetSambaConf os command injection — AC10U 6.3 Medium2024-03-24
CVE-2024-2851 Tenda AC15 setsambacfg formSetSambaConf os command injection — AC15 6.3 Medium2024-03-24
CVE-2021-33633 Command Injection in aops-ceres — aops-ceres 7.3 High2024-03-23
CVE-2024-29185 FreeScout OS Command Injection vulnerability — freescout 9.1 Critical2024-03-22
CVE-2024-2448 LoadMaster Command Injection Vulnerability — LoadMaster 8.4 High2024-03-22
CVE-2024-2812 Tenda AC15 WriteFacMac formWriteFacMac os command injection — AC15 6.3 Medium2024-03-22
CVE-2024-2742 OS Command Injection in Planet IGS-4215-16T2S — IGS-4215-16T2S 6.4 Medium2024-03-21
CVE-2024-2162 Authenticated Remote Code Execution in Kiloview NDI N series products — NDI 8.8 High2024-03-21
CVE-2024-2707 Tenda AC10U WriteFacMac formWriteFacMac os command injection — AC10U 6.3 Medium2024-03-20
CVE-2023-44092 OS Command Injection — Pandora FMS 7.6 High2024-03-19
CVE-2024-27772 Unitronics Unistream Unilogic – Versions prior to 1.35.227 CWE-78: 'OS Command Injection' — Unistream Unilogic 8.8 High2024-03-18
CVE-2024-28125 FitNesse 安全漏洞 — FitNesse 8.8 -2024-03-18
CVE-2024-28254 SpEL Injection in `GET /api/v1/events/subscriptions/validation/condition/<expr>` in OpenMetadata — OpenMetadata 8.8 High2024-03-15
CVE-2024-27920 Unsigned code template execution through workflows in projectdiscovery/nuclei — nuclei 7.4 High2024-03-15
CVE-2023-51699 OS Command Injection for Fluid Users with JuicefsRuntime — fluid 4.0 Medium2024-03-15
CVE-2024-2415 Command injection vulnerability in Movistar 4G router — Router Movistar 4G 7.8 High2024-03-13
CVE-2024-28187 OS Command Injection Vulnerability in SOY CMS — soycms 7.2 High2024-03-11
CVE-2024-2353 Totolink X6000R shttpd cstecgi.cgi setDiagnosisCfg os command injection — X6000R 8.8 High2024-03-10

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2682 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.