Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2682

2682 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-41254 Privilege escalation to cluster admin on multi-tenant environments — kustomize-controller 8.8 High2021-11-12
CVE-2021-3934 OS Command Injection in ohmyzsh/ohmyzsh — ohmyzsh/ohmyzsh 7.4 -2021-11-12
CVE-2021-3061 PAN-OS: OS Command Injection Vulnerability in the Command Line Interface (CLI) — PAN-OS 6.4 Medium2021-11-10
CVE-2021-3060 PAN-OS: OS Command Injection in Simple Certificate Enrollment Protocol (SCEP) — PAN-OS 8.1 High2021-11-10
CVE-2021-3059 PAN-OS: OS Command Injection Vulnerability When Performing Dynamic Updates — PAN-OS 8.1 High2021-11-10
CVE-2021-3058 PAN-OS: OS Command Injection Vulnerability in Web Interface XML API — PAN-OS 8.8 High2021-11-10
CVE-2021-41228 Code injection in `saved_model_cli` — tensorflow 7.5 High2021-11-05
CVE-2011-2195 websvn 操作系统命令注入漏洞 — websvn 9.8 -2021-10-26
CVE-2021-42538 Emerson WirelessHART Gateway — WirelessHART Gateway 8.0 High2021-10-22
CVE-2021-34362 Command Injection Vulnerability in Media Streaming Add-on — Media Streaming add-on 8.7 High2021-10-22
CVE-2021-1529 Cisco IOS XE SD-WAN Software Command Injection Vulnerability — Cisco IOS XE SD-WAN Software 7.8 High2021-10-21
CVE-2021-30358 Check Point Mobile Access 操作系统命令注入漏洞 — Check Point Mobile Access Portal Agent 7.2 -2021-10-19
CVE-2021-38478 InHand Networks IR615 Router — IR615 Router 9.1 Critical2021-10-19
CVE-2021-38470 InHand Networks IR615 Router — IR615 Router 9.1 Critical2021-10-19
CVE-2021-24684 PDF Light Viewer < 1.4.12 - Authenticated Command Injection — WordPress PDF Light Viewer Plugin 8.8 -2021-10-18
CVE-2021-34352 Command Injection Vulnerability in QVR — QVR 7.2 High2021-10-01
CVE-2021-35028 Zyxel Vpn2S 操作系统命令注入漏洞 — ZyWALL VPN2S Firmware 7.3 High2021-09-29
CVE-2021-21570 Dell NetWorker 操作系统命令注入漏洞 — NetWorker 6.8 Medium2021-09-28
CVE-2021-21569 Dell NetWorker 路径遍历漏洞 — NetWorker 6.8 Medium2021-09-28
CVE-2021-20035 Sonicwall SMA100 操作系统命令注入漏洞 — SMA100 6.5 -2021-09-27
CVE-2021-39826 Adobe Digital Editions Command Execution Vulnerability — Digital Editions 8.6 High2021-09-27
CVE-2021-34351 Command Injection Vulnerability in QVR — QVR 9.8 Critical2021-09-27
CVE-2021-34349 Command Injection Vulnerability in QVR — QVR 7.2 High2021-09-27
CVE-2021-34348 Command Injection Vulnerability in QVR — QVR 9.8 Critical2021-09-27
CVE-2020-26301 Command injection in mscdex/ssh2 — ssh2 7.5 High2021-09-20
CVE-2021-37913 HGiga OAKlouds - Command Injection-2 — OAKlouds OAKSv2 9.8 Critical2021-09-15
CVE-2021-37912 HGiga OAKlouds - Command Injection-1 — OAKlouds OAKSv2 9.8 Critical2021-09-15
CVE-2021-23025 F5 BIG-IP 操作系统命令注入漏洞 — BIG-IP 8.8 -2021-09-14
CVE-2021-23031 F5 BIG-IP 操作系统命令注入漏洞 — BIG-IP Advanced WAF and BIG-IP ASM 8.8 -2021-09-14
CVE-2021-31891 Siemens Desigo CC 操作系统命令注入漏洞 — Desigo CC 10.0 -2021-09-14

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2682 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.