Vulnerability index

Browse CVEs

3,669 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Github Slug Action HIGH 8.8
CVE-2023-27581

github-slug-action is a GitHub Action to expose slug value of GitHub environment variables inside of one's GitHub workflow. Starting in version 4.0.0…

Fix: 4.4.1+
Fix from $1,950 2023-03-13
E11 Firmware HIGH 8.8
CVE-2023-0351

The Akuvox E11 web server backend library allows command injection in the device phone-book contacts functionality. This could allow an attacker to u…

Mitigation only
Fix from $1,950 2023-03-13
Advanced Threat Defense MEDIUM 6.7
CVE-2023-0978

A command injection vulnerability in Trellix Intelligent Sandbox CLI for version 5.2 and earlier, allows a local user to inject and execute arbitrary…

Fix: after 4.14.2
Fix from $1,600 2023-03-13
Docker Desktop HIGH 7.8
CVE-2023-0628

Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container during initialization by tricking…

Fix: 4.17.0+
Fix from $1,950 2023-03-13
Kylin System Updater HIGH 7.8
CVE-2023-1277

A vulnerability, which was classified as critical, was found in kylin-system-updater up to 1.4.20kord on Ubuntu Kylin. Affected is the function Insta…

Fix: after 1.4.20kord
Fix from $1,950 2023-03-08
Advanced Server Access HIGH 8.8
CVE-2023-0093

Okta Advanced Server Access Client versions 1.13.1 through 1.65.0 are vulnerable to command injection due to the third party library webbrowser. An o…

Fix: 1.68.2+
Fix from $1,950 2023-03-06
Json Logic Js CRITICAL 9.8
CVE-2021-4329

A vulnerability, which was classified as critical, has been found in json-logic-js 2.0.0. Affected by this issue is some unknown functionality of the…

Patch available
Fix from $2,300 2023-03-05
Vigor 2960 Firmware HIGH 8.8
CVE-2023-1162EPSS 26%

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in DrayTek Vigor 2960 1.5.1.4/1.5.1.5. Affected is an un…

No fix yet
Fix from $1,950 2023-03-03
Eg7035 M11 Firmware CRITICAL 9.8
CVE-2023-1097

Baicells EG7035-M11 devices with firmware through BCE-ODU-1.0.8 are vulnerable to improper code exploitation via HTTP GET command injections. Comman…

Mitigation only
Fix from $2,300 2023-03-01
Sd Wan HIGH 7.2
CVE-2023-22758

Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful exploitation of these vulnerab…

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Sd Wan HIGH 7.2
CVE-2023-22759

Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful exploitation of these vulnerab…

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Sd Wan HIGH 7.2
CVE-2023-22760

Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful exploitation of these vulnerab…

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Sd Wan HIGH 7.2
CVE-2023-22761

Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful exploitation of these vulnerab…

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22762

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22763

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22764

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22765

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22766

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22767

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22768

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22769

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Arubaos HIGH 7.2
CVE-2023-22770

Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of these vulnerabilities result …

Fix: after 10.3.1.0
Fix from $1,950 2023-03-01
Email Security Appliance MEDIUM 6.7
CVE-2023-20075

Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands. These vulnerab…

Fix: 12.5.3-041 / 13.0.5-007+
Fix from $1,600 2023-03-01
Sd Wan CRITICAL 9.8
CVE-2023-22747

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets de…

Fix: after 10.3.1.0
Fix from $2,300 2023-03-01
Sd Wan CRITICAL 9.8
CVE-2023-22748

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets de…

Fix: after 10.3.1.0
Fix from $2,300 2023-03-01
Sd Wan CRITICAL 9.8
CVE-2023-22749

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets de…

Fix: after 10.3.1.0
Fix from $2,300 2023-03-01
Sd Wan CRITICAL 9.8
CVE-2023-22750

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets de…

Fix: after 10.3.1.0
Fix from $2,300 2023-03-01
Port Mys HIGH 8.8
CVE-2021-3855

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Liman Central Management System Liman MYS (HTTP/…

Fix: 1.8.3-462+
Fix from $1,950 2023-03-01
Bisheng Wnm Firmware CRITICAL 9.8
CVE-2022-48255

There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. A Huawei printer has a system command injection vulnerability. Success…

Mitigation only
Fix from $2,300 2023-02-27
Bisheng Wnm Firmware CRITICAL 9.8
CVE-2022-48259

There is a system command injection vulnerability in BiSheng-WNM FW 3.0.0.325. Successful exploitation could allow attackers to gain higher privilege…

Mitigation only
Fix from $2,300 2023-02-27