Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

systeminformation — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in systeminformation, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerability data for the systeminformation product, categorized under general system and infrastructure software, focusing on known security weaknesses. It collects a comprehensive history of security flaws, including memory corruption issues, privilege escalation paths, and information disclosure risks, covering the entire documented timeframe for this product. Readers can use this aggregation to track the vendor's security advisories, analyze the evolution of specific weakness classes, and review the complete vulnerability history associated with systeminformation to assess current risk and remediation needs.

Vendor: sebhildebrandt

CVE ID Title CVSS Severity Published
CVE-2026-50289 systeminformation: OS command injection in networkInterfaces() via interfaces(5) source-directive path on Linux CWE-78 - - 2026-07-17
CVE-2026-44724 systeminformation: Linux command injection in networkInterfaces() via unsanitized NetworkManager connection profile name CWE-78 7.8 High 2026-05-27
CVE-2026-26318 systeminformation has Command Injection via Unsanitized `locate` Output in `versions()` CWE-78 8.8 High 2026-02-19
CVE-2026-26280 Systeminformation has a Command Injection via unsanitized interface parameter in wifi.js retry path CWE-78 8.4 High 2026-02-19
CVE-2025-68154 Command Injection in fsSize() on Windows CWE-78 8.1 High 2025-12-16
CVE-2024-56334 Command injection vulnerability in getWindowsIEEE8021x (SSID) function in systeminformation CWE-94 7.8 High 2024-12-20
CVE-2023-42810 systeminformation SSID Command Injection Vulnerability CWE-77 9.8 Critical 2023-09-21
CVE-2020-26300 Command injection in systeminformation CWE-77 5.9 Medium 2021-09-09
CVE-2021-21388 Command Injection Vulnerability in systeminformation CWE-20 8.9 High 2021-04-29
CVE-2021-21315 Command Injection Vulnerability CWE-78 7.1 High 2021-02-16
CVE-2020-26274 Command Injection Vulnerability in systeminformation CWE-78 6.4 Medium 2020-12-16
CVE-2020-26245 Prototype Pollution leading to Command Injection in systeminformation CWE-78 8.1 High 2020-11-27
CVE-2020-7778 Prototype Pollution 7.3 High 2020-11-26
CVE-2020-7752 Command Injection 8.8 High 2020-10-26

All 14 known CVE vulnerabilities affecting systeminformation with full Chinese analysis, references, and POCs where available.