Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) — Vulnerability Class 2646

2646 vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2019-5029 Exhibitor 操作系统命令注入漏洞 — Exhibitor 9.8 -2019-11-13
CVE-2019-5129 YouPHPTube Encoder 操作系统命令注入漏洞 — YouPHPTube 9.8 -2019-10-25
CVE-2019-5128 YouPHPTube Encoder 操作系统命令注入漏洞 — YouPHPTube 9.8 -2019-10-25
CVE-2019-5127 YouPHPTube Encoder 操作系统命令注入漏洞 — YouPHPTube" 9.8 -2019-10-25
CVE-2019-15274 Cisco TelePresence Collaboration Endpoint Software Command Injection Vulnerability — Cisco TelePresence TC Software 6.7 -2019-10-16
CVE-2019-12812 MyBuilder viewer 输入验证错误漏洞 — MyBuilder 8.8 -2019-10-07
CVE-2019-12811 MyBuilder 操作系统命令注入漏洞 — MyBuilder 9.8 -2019-10-07
CVE-2019-12690 Cisco Firepower Management Center Command Injection Vulnerability — Cisco Firepower Management Center 8.8 -2019-10-02
CVE-2019-12091 Netskope client command injections vulnerability — Netskope client 7.8 -2019-09-26
CVE-2019-12717 Cisco NX-OS Software Virtualization Manager Command Injection Vulnerability — Cisco NX-OS Software 5.0(3)A1(1) 7.8 -2019-09-25
CVE-2019-12709 Cisco IOS XR Software for Cisco ASR 9000 VMAN CLI Privilege Escalation Vulnerability — Cisco IOS XR Software 6.7 -2019-09-25
CVE-2019-5485 NPM package gitlabhook 操作系统命令注入漏洞 — gitlabhook 9.8 -2019-09-13
CVE-2019-10891 友讯 D-Link DIR-806 操作系统命令注入漏洞 — n/a 9.8 -2019-09-06
CVE-2019-5475 Sonatype Nexus Repository Manager 操作系统命令注入漏洞 — Nexus Repository Manager 8.8 -2019-09-03
CVE-2019-1581 PAN-OS: Remote code execution vulnerability in the PAN-OS SSH device management interface — PAN-OS 9.8 Critical2019-08-23
CVE-2019-1883 Cisco Integrated Management Controller CLI Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 7.8 -2019-08-21
CVE-2019-1885 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System (Management Software) 7.2 -2019-08-21
CVE-2019-1896 Cisco Integrated Management Controller CSR Generation Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 7.2 -2019-08-21
CVE-2019-1864 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 8.8 -2019-08-21
CVE-2019-1865 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 8.8 -2019-08-21
CVE-2019-1634 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 7.2 -2019-08-21
CVE-2019-1850 Cisco Integrated Management Controller Command Injection Vulnerability — Cisco Unified Computing System E-Series Software (UCSE) 7.2 -2019-08-21
CVE-2019-5477 Nokogiri 命令操作系统命令注入漏洞 — Nokogiri (ruby gem) 9.8 -2019-08-16
CVE-2019-1971 Cisco Enterprise NFV Infrastructure Software Command Injection Vulnerability — Cisco Enterprise NFV Infrastructure Software 9.8 -2019-08-08
CVE-2019-3595 DLP Endpoint ePO extension not sanitizing CSV exports — DLP Endpoint ePO extension 6.5 -2019-07-24
CVE-2019-1010200 Voice Builder 操作系统命令注入漏洞 — Voice Builder 9.8 -2019-07-23
CVE-2019-11062 SUNNET WMPro v5.0 and v5.1 has OS Command Injection — WMPro 9.8 -2019-07-11
CVE-2019-11829 Synology Calendar 操作系统命令注入漏洞 — Calendar 7.3 High2019-06-30
CVE-2019-1878 Cisco TelePresence Endpoint Command Shell Injection Vulnerability — Cisco TelePresence TC Software 8.8 -2019-06-20
CVE-2019-1879 Cisco Integrated Management Controller CLI Command Injection Vulnerability — Cisco Unified Computing System (Management Software) 6.7 -2019-06-20

Vulnerabilities classified as CWE-78 (OS命令中使用的特殊元素转义处理不恰当(OS命令注入)) represent 2646 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.