Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2669

2669 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-38470 InHand Networks IR615 Router — IR615 Router 9.1 Critical2021-10-19
CVE-2021-24684 PDF Light Viewer < 1.4.12 - Authenticated Command Injection — WordPress PDF Light Viewer Plugin 8.8 -2021-10-18
CVE-2021-34352 Command Injection Vulnerability in QVR — QVR 7.2 High2021-10-01
CVE-2021-35028 Zyxel Vpn2S 操作系统命令注入漏洞 — ZyWALL VPN2S Firmware 7.3 High2021-09-29
CVE-2021-21570 Dell NetWorker 操作系统命令注入漏洞 — NetWorker 6.8 Medium2021-09-28
CVE-2021-21569 Dell NetWorker 路径遍历漏洞 — NetWorker 6.8 Medium2021-09-28
CVE-2021-20035 Sonicwall SMA100 操作系统命令注入漏洞 — SMA100 6.5 -2021-09-27
CVE-2021-39826 Adobe Digital Editions Command Execution Vulnerability — Digital Editions 8.6 High2021-09-27
CVE-2021-34351 Command Injection Vulnerability in QVR — QVR 9.8 Critical2021-09-27
CVE-2021-34349 Command Injection Vulnerability in QVR — QVR 7.2 High2021-09-27
CVE-2021-34348 Command Injection Vulnerability in QVR — QVR 9.8 Critical2021-09-27
CVE-2020-26301 Command injection in mscdex/ssh2 — ssh2 7.5 High2021-09-20
CVE-2021-37913 HGiga OAKlouds - Command Injection-2 — OAKlouds OAKSv2 9.8 Critical2021-09-15
CVE-2021-37912 HGiga OAKlouds - Command Injection-1 — OAKlouds OAKSv2 9.8 Critical2021-09-15
CVE-2021-23025 F5 BIG-IP 操作系统命令注入漏洞 — BIG-IP 8.8 -2021-09-14
CVE-2021-23031 F5 BIG-IP 操作系统命令注入漏洞 — BIG-IP Advanced WAF and BIG-IP ASM 8.8 -2021-09-14
CVE-2021-31891 Siemens Desigo CC 操作系统命令注入漏洞 — Desigo CC 10.0 -2021-09-14
CVE-2021-33554 UDP Technology/Geutebrück camera devices: Command injection in appfile.filename parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33553 UDP Technology/Geutebrück camera devices: Command injection in command parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33552 UDP Technology/Geutebrück camera devices: Command injection in date parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33551 UDP Technology/Geutebrück camera devices: Command injection in environment.lang parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33550 UDP Technology/Geutebrück camera devices: Command injection in date parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33548 UDP Technology/Geutebrück camera devices: Command injection in preserve parameter leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-33544 UDP Technology/Geutebrück camera devices: command injection leading to RCE — E2 Series 7.2 High2021-09-13
CVE-2021-34728 Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerabilities — Cisco IOS XR Software 7.8 High2021-09-09
CVE-2021-34722 Cisco IOS XR Software Command Injection Vulnerabilities — Cisco IOS XR Software 6.7 Medium2021-09-09
CVE-2021-34721 Cisco IOS XR Software Command Injection Vulnerabilities — Cisco IOS XR Software 6.7 Medium2021-09-09
CVE-2021-34719 Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerabilities — Cisco IOS XR Software 7.8 High2021-09-09
CVE-2021-28571 Adobe After Effects improper neutralization of special elements could lead to remote code execution — After Effects 8.3 High2021-09-08
CVE-2021-36024 Magento Commerce Improper Neutralization of Special Elements Used In A Command — Magento Commerce 9.1 Critical2021-09-01

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2669 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.