Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-94 (对生成代码的控制不恰当(代码注入)) — Vulnerability Class 1295

1295 vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-27867 IBM Db2 code execution — Db2 for Linux, UNIX and Windows 6.3 Medium2023-07-08
CVE-2023-27869 IBM Db2 code execution — Db2 for Linux, UNIX and Windows 6.3 Medium2023-07-08
CVE-2023-3551 Code Injection in nilsteampassnet/teampass — nilsteampassnet/teampass 7.6 -2023-07-08
CVE-2023-36859 PiiGAB M-Bus Code Injection — M-Bus SoftwarePack 8.8 High2023-07-06
CVE-2023-30990 IBM i command execution — i 8.6 High2023-07-03
CVE-2023-27866 IBM Informix JDBC code execution — Informix JDBC 6.3 Medium2023-06-28
CVE-2023-36467 AWS data.all vulnerable to RCE through user injection of Python Commands — aws-dataall 8.0 High2023-06-28
CVE-2023-3393 Code Injection in fossbilling/fossbilling — fossbilling/fossbilling 5.7 -2023-06-23
CVE-2023-35926 Insecure sandbox in Backstage Scaffolder plugin — backstage 8.1 High2023-06-22
CVE-2023-26436 Open-Xchange AppSuite 代码问题漏洞 — OX App Suite 7.1 High2023-06-20
CVE-2023-34251 Grav Server Side Template Injection vulnerability — grav 10.0 Critical2023-06-14
CVE-2023-1049 Schneider Electric EcoStruxure Operator Terminal Expert 代码注入漏洞 — EcoStruxure™ Operator Terminal Expert 7.8 High2023-06-14
CVE-2023-21569 Azure DevOps Server Spoofing Vulnerability — Azure DevOps Server 2020.1.2 5.5 Medium2023-06-13
CVE-2023-25910 Siemens SIMATIC PCS 7 代码注入漏洞 — SIMATIC PCS 7 10.0 Critical2023-06-13
CVE-2023-3224 Code Injection in nuxt/nuxt — nuxt/nuxt 8.6 -2023-06-13
CVE-2023-34468 Apache NiFi: Potential Code Injection with Database Services using H2 — Apache NiFi 8.8 -2023-06-12
CVE-2023-34112 JavaCPP project actions vulnerable to code injection — javacpp-presets 4.3 Medium2023-06-08
CVE-2023-34237 Remote code execution via specially crafted script settings in SABnzbd — sabnzbd 8.1 High2023-06-07
CVE-2020-36708 Epsilon Framework Themes (Various Versions) - Function Injection — Antreas 9.8 Critical2023-06-07
CVE-2023-32540 Advantech WebAccess/SCADA 代码注入漏洞 — WebAccess/SCADA 7.2 High2023-06-05
CVE-2023-25539 Dell NetWorker 操作系统命令注入漏洞 — NetWorker NVE 8.4 High2023-05-31
CVE-2023-32692 Remote Code Execution Vulnerability in Validation Placeholders — CodeIgniter4 9.8 Critical2023-05-30
CVE-2023-2928 DedeCMS article_allowurl_edit.php code injection — DedeCMS 6.3 Medium2023-05-27
CVE-2023-2943 Code Injection in openemr/openemr — openemr/openemr 8.6 -2023-05-27
CVE-2023-33246 Apache RocketMQ: Possible remote code execution vulnerability when using the update configuration function — Apache RocketMQ 9.8 -2023-05-24
CVE-2023-2859 Code Injection in nilsteampassnet/teampass — nilsteampassnet/teampass 9.4 -2023-05-24
CVE-2023-32697 Sqlite-jdbc vulnerable to remote code execution when JDBC url is attacker controlled — sqlite-jdbc 8.8 High2023-05-23
CVE-2023-24955 Microsoft SharePoint Server Remote Code Execution Vulnerability — Microsoft SharePoint Enterprise Server 2016 7.2 High2023-05-09
CVE-2023-2583 Code Injection in jsreport/jsreport — jsreport/jsreport 7.3 -2023-05-08
CVE-2023-31415 Elastic Kibana 代码注入漏洞 — Kibana 9.9 -2023-05-04

Vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)) represent 1295 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.