Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-94 (对生成代码的控制不恰当(代码注入)) — Vulnerability Class 1295

1295 vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-25411 Samsung SMR 输入验证错误漏洞 — Samsung Mobile Devices 4.4 -2021-06-11
CVE-2021-32673 Remote Command Execution in reg-keygen-git-hash-plugin — reg-suit 8.8 High2021-06-08
CVE-2021-24312 WP Super Cache < 1.7.3 - Authenticated Remote Code Execution — WP Super Cache 7.2 -2021-06-01
CVE-2021-32621 Script injection without script or programming rights through Gadget titles — xwiki-platform 8.8 High2021-05-28
CVE-2021-29505 XStream is vulnerable to a Remote Command Execution attack — xstream 7.5 High2021-05-28
CVE-2021-22900 Pulse Secure Pulse Connect Secure 代码注入漏洞 — Pulse Secure Secure 6.5 -2021-05-27
CVE-2021-22894 Pulse Secure Pulse Connect Secure 缓冲区错误漏洞 — Pulse Connect Secure 8.8 -2021-05-27
CVE-2021-22117 Pivotal Software RabbitMQ 代码注入漏洞 — RabbitMQ 7.1 -2021-05-18
CVE-2019-14827 Moodle 代码注入漏洞 — Moodle 6.1 -2021-05-17
CVE-2021-29493 Kennnyshiwa-cogs vulnerable to Remote Code Execution in Tickets Module — kennnyshiwa-cogs 6.5 Medium2021-05-06
CVE-2021-21415 Visual Studio Code Prisma Extension Remote Code Execution Vulnerability — language-tools 7.8 High2021-04-29
CVE-2021-29475 PDF export allows arbitrary file reads — hedgedoc 10.0 Critical2021-04-26
CVE-2021-29465 Remote file overwrite on discord-recon can result in DoS and Remote Code Execution — Discord-Recon 8.3 High2021-04-22
CVE-2021-29461 LFI and possible code execution on discord-recon using tools arguments — Discord-Recon 8.1 High2021-04-20
CVE-2021-29440 Twig allowing dangerous PHP functions by default — grav 8.4 High2021-04-13
CVE-2021-23281 Remote Code execution — Intelligent Power manager (IPM) 10.0 Critical2021-04-13
CVE-2021-21433 Remote code execution on discord-recon .dirsearch and .arjun commands due to improper input validation — Discord-Recon 9.9 Critical2021-04-09
CVE-2021-1362 Cisco Unified Communications Products Remote Code Execution Vulnerability — Cisco Unity Connection 8.8 High2021-04-08
CVE-2021-27438 Grid Solutions GE Reason DR60 信任管理问题漏洞 — Reason DR60 9.8 -2021-03-25
CVE-2021-21345 XStream is vulnerable to a Remote Command Execution attack — xstream 5.8 Medium2021-03-22
CVE-2021-3411 Linux kernel 代码注入漏洞 — Linux kernel 7.8 -2021-03-09
CVE-2021-20187 Moodle 代码注入漏洞 — moodle 7.2 -2021-01-28
CVE-2020-8274 Citrix Secure Mail For Android 代码注入漏洞 — Citrix Secure Mail for Android 6.5 -2021-01-06
CVE-2020-15252 RCE in XWiki — xwiki-platform 8.5 High2020-10-16
CVE-2020-8243 Pulse Secure Pulse Connect Secure 代码注入漏洞 — Pulse Connect Secre 7.2 -2020-09-29
CVE-2020-15171 Users with SCRIPT rights can execute arbitrary code in XWiki — xwiki-platform 6.6 Medium2020-09-10
CVE-2020-7381 Code Injection in Rapid7 Nexpose Installer — Nexpose 5.8 Medium2020-09-03
CVE-2020-15167 Arbitrary code execution via configuration file in Miller — miller 8.2 High2020-09-02
CVE-2020-15150 Remote Code Execution in paginator(hex) — paginator 9.0 Critical2020-09-01
CVE-2020-15147 Remote Code Execution in Red Discord Bot — Red-DiscordBot 8.5 High2020-08-21

Vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)) represent 1295 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.