Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-94 (对生成代码的控制不恰当(代码注入)) — Vulnerability Class 1295

1295 vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2020-15142 Arbitrary Code Generation — openapi-python-client 8.0 High2020-08-14
CVE-2020-10055 Siemens Desigo CC和Desigo CC Compact 代码注入漏洞 — Desigo CC 8.1 -2020-08-14
CVE-2020-8224 Nextcloud Desktop Client 代码注入漏洞 — Desktop Client 7.8 -2020-08-10
CVE-2020-8218 Pulse Secure Pulse Connect Secure 代码注入漏洞 — Pulse Connect Secure 7.2 -2020-07-30
CVE-2020-12013 Mitsubishi Electric MC Works32 SQL注入漏洞 — MC Works64 9.8 -2020-07-16
CVE-2020-8194 Citrix Systems Citrix Application Delivery Controller、Citrix Gateway和Citrix SDWAN WAN-OP 代码注入漏洞 — Citrix ADC, Citrix Gateway, Citrix SDWAN WAN-OP 8.1 -2020-07-10
CVE-2020-8163 Ruby on Rails 代码注入漏洞 — https://github.com/rails/rails 8.8 -2020-07-02
CVE-2020-8180 Nextcloud Talk 代码注入漏洞 — Nextcloud Talk 9.9 -2020-06-08
CVE-2020-7013 Elasticsearch Kibana 代码注入漏洞 — Kibana 8.8 -2020-06-03
CVE-2020-7012 Elasticsearch Kibana 代码注入漏洞 — Kibana 8.8 -2020-06-03
CVE-2020-11079 command injection fix in node-dns-sync — node-dns-sync 8.6 High2020-05-28
CVE-2020-8149 logkitty npm package 代码注入漏洞 — logkitty 9.8 -2020-05-15
CVE-2020-11057 Code Injection in XWiki Platform — XWiki Platform 9.9 Critical2020-05-12
CVE-2020-11056 Potential Code Injection in Sprout Forms — Sprout Forms 7.4 High2020-05-07
CVE-2020-5739 Grandstream GXP1600 代码注入漏洞 — Grandstream GXP1600 Series 8.8 -2020-04-14
CVE-2020-10684 Ansible Engine 代码注入漏洞 — Ansible 7.9 High2020-03-24
CVE-2020-7480 Schneider Electric Andover Continuum 代码注入漏洞 — Andover Continuum (All versions) 9.8 -2020-03-23
CVE-2020-8140 Nextcloud Desktop Client 代码注入漏洞 — Desktop Client 6.7 -2020-03-20
CVE-2020-8137 blamer 代码注入漏洞 — blamer 9.8 -2020-03-20
CVE-2019-18582 Dell EMC Data Protection Advisor 代码注入漏洞 — Data Protection Advisor 7.2 -2020-03-18
CVE-2020-8141 dot package 代码注入漏洞 — dot 8.8 -2020-03-15
CVE-2020-5258 Prototype pollution in dojo — dojo 7.7 High2020-03-10
CVE-2020-5259 Prototype Pollution in Dojox — dojox 7.7 High2020-03-10
CVE-2019-3695 pcp: Local privilege escalation from user pcp to root — SUSE Linux Enterprise High Performance Computing 15-ESPOS 8.4 High2020-03-03
CVE-2020-8132 pdf-image npm package 输入验证错误漏洞 — pdf-image 8.8 -2020-02-28
CVE-2020-8129 script-manager npm package 代码注入漏洞 — script-manager 9.8 -2020-02-14
CVE-2019-7486 SonicWall SMA100 代码注入漏洞 — SMA100 8.8 -2019-12-19
CVE-2019-15597 node-df 代码注入漏洞 — node-df 9.8 -2019-12-18
CVE-2019-15598 tree-kill 操作系统命令注入漏洞 — treekill 9.8 -2019-12-18
CVE-2019-15599 tree-kill 代码注入漏洞 — tree-kill 9.8 -2019-12-18

Vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)) represent 1295 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.