Vulnerability index

Browse CVEs

6,380 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Rv320 Firmware HIGH 7.2
CVE-2023-20128EPSS 30%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an au…

Mitigation only
Fix from $1,950 2023-04-05
Identity Services Engine MEDIUM 6.7
CVE-2023-20022

Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman…

Mitigation only
Fix from $1,600 2023-04-05
Identity Services Engine MEDIUM 6.7
CVE-2023-20023

Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman…

Mitigation only
Fix from $1,600 2023-04-05
Identity Services Engine MEDIUM 6.7
CVE-2023-20021

Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman…

Mitigation only
Fix from $1,600 2023-04-05
Ag550qcn Firmware CRITICAL 9.8
CVE-2023-26921

OS Command Injection vulnerability in quectel AG550QCN allows attackers to execute arbitrary commands via ql_atfwd.

No fix yet
Fix from $2,300 2023-04-04
Aiseg2 Firmware HIGH 8.8
CVE-2023-28726

Panasonic AiSEG2 versions 2.80F through 2.93A allows remote attackers to execute arbitrary OS commands.

Fix: after 2.93a
Fix from $1,950 2023-03-31
Nextcloud Server HIGH 8.8
CVE-2023-26482

Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed users to create workflows which…

Fix: 20.0.14.12 / 21.0.9.10+
Fix from $1,950 2023-03-30
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43644

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43645

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43646

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43647

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43631

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43632

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43633

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43642

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 825\/ee Firmware HIGH 8.8
CVE-2022-43643

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti…

Fix: after 1.0.9
Fix from $1,950 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43624

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43626

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43627

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43628

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 1935 Firmware MEDIUM 6.8
CVE-2022-43629

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au…

Fix: after 1.02
Fix from $1,600 2023-03-29
Dir 2150 Firmware HIGH 8.8
CVE-2022-3210

This vulnerability allows network-adjacent attackers to execute arbitrary commands on affected installations of D-Link DIR-2150 4.0.1 routers. Authen…

Fix: after 4.0.1
Fix from $1,950 2023-03-29
Tl Wr841 Firmware HIGH 8.0
CVE-2022-42433

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_V14_22012…

Fix: 220914+
Fix from $1,950 2023-03-29
Cax80 Firmware HIGH 8.0
CVE-2022-27647

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers…

Fix: 1.0.1.78 / 1.0.4.126+
Fix from $1,950 2023-03-29
Qvr HIGH 7.2
CVE-2023-23355

An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote auth…

Fix: 5.0.1.2346+
Fix from $1,950 2023-03-29
Osprey Pump Controller Firmware CRITICAL 9.8
CVE-2023-27394EPSS 18%

Osprey Pump Controller version 1.01 is vulnerable an unauthenticated OS command injection vulnerability. This can be exploited to inject and execute …

Mitigation only
Fix from $2,300 2023-03-28
Osprey Pump Controller Firmware CRITICAL 9.8
CVE-2023-27886

Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated OS command injection vulnerability. This can be exploited to inject and execu…

Mitigation only
Fix from $2,300 2023-03-28
Discordrb CRITICAL 9.6
CVE-2023-28102

discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely constructs a sh…

Fix: 2023-03-08+
Fix from $2,300 2023-03-27
Medusa HIGH 8.8
CVE-2023-28627

pymedusa is an automatic video library manager for TV Shows. In versions prior 1.0.12 an attacker with access to the web interface can update the git…

Fix: 1.0.12+
Fix from $1,950 2023-03-27
Oaklouds Mailsherlock HIGH 7.2
CVE-2023-24841

HGiga MailSherlock query function for connection log has a vulnerability of insufficient filtering for user input. An authenticated remote attacker w…

Mitigation only
Fix from $1,950 2023-03-27