Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-94 (对生成代码的控制不恰当(代码注入)) — Vulnerability Class 1295

1295 vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2019-16774 Object injection in cookie driver — phpfastcache 4.4 Medium2019-12-12
CVE-2019-14867 Red Hat FreeIPA 代码注入漏洞 — ipa 8.8 -2019-11-27
CVE-2019-10211 PostgreSQL 输入验证错误漏洞 — postgresql 9.8 -2019-10-29
CVE-2019-3652 ENS code injection in EPSetup.exe — McAfee Endpoint Security (ENS) 5.0 Medium2019-10-09
CVE-2019-13558 Advantech WebAccess 代码注入漏洞 — WebAccess 9.8 -2019-09-18
CVE-2019-3759 Dell RSA Identity Governance and Lifecycle和RSA Via Lifecycle and Governance 代码注入漏洞 — RSA Identity Governance and Lifecycle 6.4 Medium2019-09-11
CVE-2019-2390 Code execution on Windows via OpenSSL engine injection — MongoDB Server 8.2 High2019-08-30
CVE-2019-9140 Happypoint mobile application information disclosure vulnerability — Happypoint mobile app 8.1 -2019-08-01
CVE-2019-10173 XStream 代码注入漏洞 — xstream 9.8 -2019-07-23
CVE-2019-6823 Schneider Electric ProClima 代码注入漏洞 — ProClima all versions prior to version 8.0.0 9.8 -2019-07-15
CVE-2019-5443 Haxx curl 代码问题漏洞 — curl 7.8 -2019-07-02
CVE-2014-5401 Hospira MedNet Code Injection — MedNet 9.8 -2019-03-26
CVE-2019-7610 Elasticsearch Kibana 命令注入漏洞 — Kibana 9.0 -2019-03-25
CVE-2019-7609 Elasticsearch Kibana 代码注入漏洞 — Kibana 9.6 -2019-03-25
CVE-2019-5413 npm package morgan 安全漏洞 — morgan 9.8 -2019-03-17
CVE-2018-19002 LCDS LAquis SCADA 代码注入漏洞 — LCDS Laquis SCADA 7.8 -2019-02-05
CVE-2018-19011 Omron CX-Supervisor 代码注入漏洞 — CX-Supervisor 7.3 -2019-01-22
CVE-2017-1002152 Bodhi 跨站脚本漏洞 — Bodhi 6.1 -2019-01-10
CVE-2018-0461 Cisco IP Phone 8800 Series Arbitrary Script Injection Vulnerability — Cisco IP Phone 8800 Series Software 8.3 -2019-01-10
CVE-2018-14667 RichFaces Framework 代码注入漏洞 — RichFaces 9.8 -2018-11-06
CVE-2016-5402 Red Hat CloudForms Management Engine 代码注入漏洞 — cfme 8.8 -2018-10-31
CVE-2018-3784 cryo 代码注入漏洞 — cryo 9.8 -2018-08-17
CVE-2017-16082 pg模块安全漏洞 — pg node module 9.8 -2018-06-07
CVE-2017-16100 dns-sync 安全漏洞 — dns-sync node module 9.8 -2018-06-07
CVE-2017-16151 Google Chromium Electron 安全漏洞 — electron node module 9.8 -2018-06-07
CVE-2017-16020 Summit 安全漏洞 — summit node module 9.8 -2018-06-04
CVE-2017-16042 Growl 安全漏洞 — growl node module 9.8 -2018-06-04
CVE-2014-10065 remarkable 跨站脚本漏洞 — remarkable node module 6.1 -2018-05-31
CVE-2016-10546 PouchDB 安全漏洞 — pouchdb node module 9.8 -2018-05-31
CVE-2016-10548 reduce-css-calc node模块安全漏洞 — reduce-css-calc node module 6.1 -2018-05-31

Vulnerabilities classified as CWE-94 (对生成代码的控制不恰当(代码注入)) represent 1295 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.