Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2682

2682 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2024-13089 Authenticated RCE in update functionality in Guardian/CMC before 24.6.0 — Guardian 7.2 High2025-06-10
CVE-2025-5743 Schneider Electric EVLink WallBox 操作系统命令注入漏洞 — EVLink WallBox 5.5 Medium2025-06-10
CVE-2025-5952 Zend.To NSSDropoff.php exec os command injection — Zend.To 7.3 High2025-06-10
CVE-2025-49141 HaxCMS-PHP Command Injection Vulnerability — issues 8.6 High2025-06-09
CVE-2024-13087 QHora — QuRouter 7.2AIHighAI2025-06-06
CVE-2011-10007 File::Find::Rule through 0.34 for Perl is vulnerable to Arbitrary Code Execution when `grep()` encounters a crafted file name — File::Find::Rule 9.8 -2025-06-05
CVE-2025-49008 Atheos Improper Input Validation Vulnerability Enables RCE in Common.php — Atheos 8.8AIHighAI2025-06-05
CVE-2025-5621 D-Link DIR-816 qosClassifier os command injection — DIR-816 7.3 High2025-06-04
CVE-2025-5620 D-Link DIR-816 setipsec_config os command injection — DIR-816 7.3 High2025-06-04
CVE-2025-5573 D-Link DCS-932L setSystemWizard setSystemControl os command injection — DCS-932L 6.3 Medium2025-06-04
CVE-2025-5571 D-Link DCS-932L setSystemAdmin os command injection — DCS-932L 6.3 Medium2025-06-04
CVE-2025-5525 Jrohy trojan linux.go LogChan os command injection — trojan 5.6 Medium2025-06-03
CVE-2025-5447 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 ssid1MACFilter os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5446 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_checkCredentialsByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5445 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_checkFWByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5444 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_UpgradeFWByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5443 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 wirelessAdvancedHidden os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5442 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 RP_pingGatewayByBBS os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5441 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 setDeviceURL os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5440 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 NTP os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-5439 Linksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 verifyFacebookLike os command injection — RE6500 6.3 Medium2025-06-02
CVE-2025-41385 Uchida Yoko wivia 操作系统命令注入漏洞 — wivia 5 7.2AIHighAI2025-05-30
CVE-2025-48047 MICI Network Co. Ltd. NetFax Server Command Injection — NetFax Server 8.8AIHighAI2025-05-29
CVE-2025-5277 aws-mcp-server 安全漏洞 — aws-mcp-server 9.6 Critical2025-05-28
CVE-2025-1753 Command Injection in LLama-Index CLI in run-llama/llama_index — run-llama/llama_index 8.8AIHighAI2025-05-28
CVE-2025-5106 Fujian Kelixun Filename fax_view.php os command injection — Kelixun 7.3 High2025-05-23
CVE-2023-34873 MOBOTIX P3 Cameras 安全漏洞 — P3 8.8 -2025-05-23
CVE-2025-47780 cli_permissions.conf: deny option does not work for disallowing shell commands — asterisk 8.8AIHighAI2025-05-22
CVE-2025-3883 eCharge Hardy Barth cPH2 index.php Command Injection Remote Code Execution Vulnerability — cPH2 8.8AIHighAI2025-05-22
CVE-2025-3882 eCharge Hardy Barth cPH2 nwcheckexec.php dest Command Injection Remote Code Execution Vulnerability — cPH2 8.8AIHighAI2025-05-22

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2682 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.