Vulnerability index

Browse CVEs

3,672 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
MEDIUM 6.3 CVE-2017-12329 A vulnerability in the CLI of Cisco Firepower Extensible Operating System (FXOS) and NX-OS System Software could allow an authenticated, local attack… Nx Os Mitigation only Fix from $1,6002017-11-30 MEDIUM 6.3 CVE-2017-12330 A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. The vul… Nx Os Mitigation only Fix from $1,6002017-11-30 MEDIUM 6.3 CVE-2017-12335 A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. The vul… Nx Os Mitigation only Fix from $1,6002017-11-30 MEDIUM 5.7 CVE-2017-12339 A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. The vul… Nx Os Mitigation only Fix from $1,6002017-11-30 MEDIUM 6.7 CVE-2017-12341 A vulnerability in the CLI of Cisco NX-OS System Software could allow an authenticated, local attacker to perform a command injection attack. An atta… Unified Computing System Mitigation only Fix from $1,6002017-11-30 HIGH 7.2 CVE-2017-8188 FusionSphere OpenStack V100R006C00SPC102(NFV)has a command injection vulnerability. Due to lack of validation, an attacker with high privilege may in… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.0 CVE-2017-8193 The FusionSphere OpenStack V100R006C00SPC102(NFV) has a command injection vulnerability. Due to the insufficient input validation on one port, an aut… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 7.2 CVE-2017-8197 FusionSphere V100R006C00SPC102(NFV) has a command injection vulnerability. An authenticated, remote attacker could craft packets with malicious strin… Fusionsphere Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-8131 The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation o… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-8132 The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation o… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-8133 Huawei iManager NetEco with software V600R008C00 and V600R008C10 has a command injection vulnerability. An authenticated, remote attacker could explo… Neteco Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-8134 The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation o… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-8135 The FusionSphere OpenStack with software V100R006C00 and V100R006C10 has a command injection vulnerability due to the insufficient input validation o… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-2718 FusionSphere OpenStack with software V100R006C00 and V100R006C10RC2 has two command injection vulnerabilities due to the insufficient input validatio… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 8.8 CVE-2017-2719 FusionSphere OpenStack with software V100R006C00 and V100R006C10RC2 has two command injection vulnerabilities due to the insufficient input validatio… Fusionsphere Openstack Mitigation only Fix from $1,9502017-11-22 HIGH 7.2 CVE-2017-2736 VCM5010 with software versions earlier before V100R002C50SPC100 has a command injection vulnerability. This is due to insufficient validation of user… Vcm5010 Firmware Mitigation only Fix from $1,9502017-11-22 HIGH 7.8 CVE-2017-2692 The Keyguard application in ALE-L02C635B140 and earlier versions,ALE-L02C636B140 and earlier versions,ALE-L21C10B150 and earlier versions,ALE-L21C185… P8 Lite Firmware Mitigation only Fix from $1,9502017-11-22 CRITICAL 9.8 CVE-2017-13071 QNAP has already patched this vulnerability. This security concern allows a remote attacker to run arbitrary commands on the QNAP Video Station 5.1.3… Video Station Mitigation only Fix from $2,3002017-11-22 MEDIUM 6.7 CVE-2017-12305 A vulnerability in the debug interface of Cisco IP Phone 8800 series could allow an authenticated, local attacker to execute arbitrary commands, aka … Ip Phone 8800 Series Firmware Mitigation only Fix from $1,6002017-11-16 CRITICAL 9.8 CVE-2008-7319EPSS 6% The Net::Ping::External extension through 0.15 for Perl does not properly sanitize arguments (e.g., invalid hostnames) containing shell metacharacter… Net Ping External after 0.15 Fix from $2,3002017-11-07 MEDIUM 6.5 CVE-2017-12094 An exploitable vulnerability exists in the WiFi Channel parsing of Circle with Disney running firmware 2.0.1. A specially crafted SSID can cause the … Circle With Disney Firmware No fix yet Fix from $1,6002017-11-07 HIGH 8.8 CVE-2017-12277 A vulnerability in the Smart Licensing Manager service of the Cisco Firepower 4100 Series Next-Generation Firewall (NGFW) and Firepower 9300 Security… Firepower Extensible Operating System after 1.1.3 Fix from $1,9502017-11-02 CRITICAL 9.8 CVE-2014-1203EPSS 16% The get_login_ip_config_file function in Eyou Mail System before 3.6 allows remote attackers to execute arbitrary commands via shell metacharacters i… Eyou 3.6+ Fix from $2,3002017-10-24 HIGH 8.1 CVE-2013-7377 The codem-transcode module before 0.5.0 for Node.js, when ffprobe is enabled, allows remote attackers to execute arbitrary commands via a POST reques… Codem Transcode Mitigation only Fix from $1,9502017-10-23 CRITICAL 9.8 CVE-2014-3741 The printDirect function in lib/printer.js in the node-printer module 0.0.1 and earlier for Node.js allows remote attackers to execute arbitrary comm… Node Printer after 0.0.1 Fix from $2,3002017-10-23 HIGH 8.8 CVE-2014-9118EPSS 53% The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacharacters… Znid 2426a Firmware No fix yet Fix from $1,9502017-10-17 CRITICAL 9.8 CVE-2015-7806EPSS 6% Eval injection vulnerability in the fm_saveHelperGatherItems function in ajax.php in the Form Manager plugin before 1.7.3 for WordPress allows remote… Form Manager No fix yet Fix from $2,3002017-10-17 HIGH 7.8 CVE-2016-4922 Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the oper… Junos Mitigation only Fix from $1,9502017-10-13 CRITICAL 9.8 CVE-2013-6924EPSS 15% Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbitrary commands via shell metacharacters in the ip… Blackarmor Nas 220 Firmware No fix yet Fix from $2,3002017-10-11 CRITICAL 9.8 CVE-2008-7315 UI-Dialog 1.09 and earlier allows remote attackers to execute arbitrary commands. Ui\ No fix yet Fix from $2,3002017-10-10