Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2682

2682 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-32751 Arbitrary code execution via specially crafted environment variables — gradle 7.5 High2021-07-20
CVE-2020-5322 DELL EMC OpenManage Enterprise-Modular 操作系统操作系统命令注入漏洞 — Dell OpenManage Enterprise Modular 9.1 Critical2021-07-19
CVE-2020-29499 Dell EMC PowerStore 操作系统命令注入漏洞 — PowerStore 6.4 Medium2021-07-19
CVE-2021-21819 D-LINK DIR-3040 操作系统命令注入漏洞 — D-Link 9.8 -2021-07-16
CVE-2021-32749 Possible RCE vulnerability in mailing action using mailutils (mail-whois) — fail2ban 6.1 Medium2021-07-16
CVE-2021-32534 QSAN SANOS - Command Injection — SANOS 9.8 Critical2021-07-07
CVE-2021-32533 QSAN SANOS - Command Injection — SANOS 9.8 Critical2021-07-07
CVE-2021-32531 QSAN XEVO - Command Injection Following via Init function — XEVO 9.8 Critical2021-07-07
CVE-2021-32530 QSAN XEVO - Command Injection Following via Array function — XEVO 9.8 Critical2021-07-07
CVE-2021-32524 QSAN Storage Manager - Command Injection-3 — Storage Manager 9.1 Critical2021-07-07
CVE-2021-32513 QSAN Storage Manager - Command Injection Following via QsanTorture function — Storage Manager 9.8 Critical2021-07-07
CVE-2021-32512 QSAN Storage Manager - Command Injection Following via QuickInstall function — Storage Manager 9.8 Critical2021-07-07
CVE-2021-28804 Command Injection Vulnerabilities in QTS and QuTS hero — QTS 9.8 -2021-07-01
CVE-2021-28802 Command Injection Vulnerabilities in QTS and QuTS hero — QTS 9.8 -2021-07-01
CVE-2021-31838 Command injection through environment variable in MVISION EDR — MVISION EDR 8.4 High2021-06-29
CVE-2021-33534 WEIDMUELLER: WLAN devices affected by OS Command Injection vulnerability — IE-WL(T)-BL-AP-CL-XX 7.2 High2021-06-25
CVE-2021-33533 WEIDMUELLER: WLAN devices affected by OS Command Injection vulnerability — IE-WL(T)-BL-AP-CL-XX 8.8 High2021-06-25
CVE-2021-33532 WEIDMUELLER: WLAN devices affected by OS Command Injection vulnerability — IE-WL(T)-BL-AP-CL-XX 8.8 High2021-06-25
CVE-2021-33530 WEIDMUELLER: WLAN devices affected by OS Command Injection vulnerability — IE-WL(T)-BL-AP-CL-XX 8.8 High2021-06-25
CVE-2021-35047 Privileged Command Injection Vulnerability in Fidelis Network and Deception — Fidelis Network 9.9 Critical2021-06-25
CVE-2021-28800 Command Injection Vulnerability in QTS — QTS 8.1 High2021-06-24
CVE-2021-32556 apport get_modified_conffiles() function command injection — apport 3.8 Low2021-06-12
CVE-2021-33841 Circutor SGE-PLC1000 OS command Injection — SGE-PLC1000 10.0 Critical2021-06-09
CVE-2021-28811 Vulnerability in Roon Server — Roon Server 7.2 High2021-06-08
CVE-2021-1538 Cisco Common Services Platform Collector Command Injection Vulnerability — Cisco Common Services Platform Collector Software 4.7 Medium2021-06-04
CVE-2021-20026 SonicWall NSM On-Prem 操作系统命令注入漏洞 — SonicWall NSM On-Prem 8.8 -2021-05-27
CVE-2021-1487 Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Command Injection Vulnerability — Cisco Prime Infrastructure 8.8 High2021-05-22
CVE-2021-1560 Cisco DNA Spaces Connector Command Injection Vulnerabilities — Cisco DNA Spaces Connector 6.5 Medium2021-05-22
CVE-2021-1559 Cisco DNA Spaces Connector Command Injection Vulnerabilities — Cisco DNA Spaces Connector 6.5 Medium2021-05-22
CVE-2021-1558 Cisco DNA Spaces Connector Privilege Escalation Vulnerabilities — Cisco DNA Spaces Connector 6.0 Medium2021-05-22

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2682 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.