Vulnerability index

Browse CVEs

6,380 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
Rg Uac 6000 Cc Firmware HIGH 7.2
CVE-2024-5337EPSS 9%

A vulnerability was found in Ruijie RG-UAC up to 20240516 and classified as critical. This issue affects some unknown processing of the file /view/sy…

Mitigation only
Fix from $1,950 2024-05-25
G416 Firmware HIGH 8.8
CVE-2024-5295

D-Link G416 flupl self Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitra…

Fix: 1.09b01+
Fix from $1,950 2024-05-23
D View 8 HIGH 8.8
CVE-2024-5297

D-Link D-View executeWmicCmd Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary c…

No fix yet
Fix from $1,950 2024-05-23
Dir 2150 Firmware HIGH 8.8
CVE-2024-5291

D-Link DIR-2150 GetDeviceSettings Target Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers …

Mitigation only
Fix from $1,950 2024-05-23
Omada Er605 Firmware HIGH 7.5
CVE-2024-5227

TP-Link Omada ER605 PPTP VPN username Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to …

Mitigation only
Fix from $1,950 2024-05-23
Ilias HIGH 7.2
CVE-2024-33529

ILIAS 7 before 7.30 and ILIAS 8 before 8.11 as well as ILIAS 9.0 allow remote authenticated attackers with administrative privileges to execute opera…

Fix: 7.30 / 8.11+
Fix from $1,950 2024-05-21
Unclassified CRITICAL 10.0
CVE-2023-3939

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in ZkTeco-based OEM devices allows OS Comm…

Mitigation only
Fix from $2,300 2024-05-21
Unclassified HIGH 7.2
CVE-2024-0401

ASUS routers supporting custom OpenVPN profiles are vulnerable to a code execution vulnerability. An authenticated and remote attacker can execute ar…

Mitigation only
Fix from $1,950 2024-05-20
Confd Basic HIGH 7.8
CVE-2024-20326

A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attac…

Fix: 5.4 / 5.5+
Fix from $1,950 2024-05-16
Dreamweaver HIGH 7.8
CVE-2024-30314

Dreamweaver Desktop versions 21.3 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injec…

Fix: 21.4+
Fix from $1,950 2024-05-16
Lollms Web Ui HIGH 8.4
CVE-2024-3126

A command injection vulnerability exists in the 'run_xtts_api_server' function of the parisneo/lollms-webui application, specifically within the 'lol…

Fix: 9.5+
Fix from $1,950 2024-05-16
Dar 7000 Firmware CRITICAL 9.8
CVE-2024-4965

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000-40 V31R02B1413C and classified as critical. This issue affects some unkn…

Mitigation only
Fix from $2,300 2024-05-16
Cam Firmware HIGH 8.8
CVE-2023-6321

A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially crafted command can lead to command execution as the root…

Fix: 4.2.10 / 4.2.11+
Fix from $1,950 2024-05-15
Arubaos HIGH 7.5
CVE-2024-31480

Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vul…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 7.5
CVE-2024-31481

Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vul…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 7.5
CVE-2024-31482

An unauthenticated Denial-of-Service (DoS) vulnerability exists in the ANSI escape code service accessed via the PAPI protocol. Successful exploitati…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 8.8
CVE-2024-31476

Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilities result…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 8.8
CVE-2024-31477

Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilities result…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 7.5
CVE-2024-31478

Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exists in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos HIGH 7.5
CVE-2024-31479

Unauthenticated Denial of Service (DoS) vulnerabilities exist in the Central Communications service accessed via the PAPI protocol. Successful exploi…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $1,950 2024-05-14
Arubaos CRITICAL 9.8
CVE-2024-31472

There are command injection vulnerabilities in the underlying Soft AP Daemon service that could lead to unauthenticated remote code execution by send…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $2,300 2024-05-14
Arubaos CRITICAL 9.8
CVE-2024-31473

There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated remote code execution by sen…

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $2,300 2024-05-14
Arubaos CRITICAL 9.8
CVE-2024-31471

There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution …

Fix: 8.6.0.24 / 8.10.0.11+
Fix from $2,300 2024-05-14
X5000r Firmware HIGH 8.8
CVE-2024-32351

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "mru" paramet…

No fix yet
Fix from $1,950 2024-05-14
Unclassified HIGH 8.4
CVE-2024-1628

OS command injection vulnerabilities in GE HealthCare ultrasound devices

Mitigation only
Fix from $1,950 2024-05-14
Rg Uac 6000 Cc Firmware CRITICAL 9.8
CVE-2024-4816EPSS 6%

A vulnerability, which was classified as critical, was found in Ruijie RG-UAC up to 20240506. This affects an unknown part of the file /view/networkC…

Mitigation only
Fix from $2,300 2024-05-14
Rg Uac 6000 Cc Firmware CRITICAL 9.8
CVE-2024-4815EPSS 6%

A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240506. Affected by this issue is some unknown functionali…

Mitigation only
Fix from $2,300 2024-05-14
Rg Uac 6000 Cc Firmware CRITICAL 9.8
CVE-2024-4814EPSS 6%

A vulnerability classified as critical was found in Ruijie RG-UAC up to 20240506. Affected by this vulnerability is an unknown functionality of the f…

Mitigation only
Fix from $2,300 2024-05-14
Rg Uac 6000 Cc Firmware CRITICAL 9.8
CVE-2024-4813EPSS 6%

A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240506. Affected is an unknown function of the file /view/networkConfi…

Mitigation only
Fix from $2,300 2024-05-14
X5000r Firmware HIGH 8.8
CVE-2024-34921EPSS 9%

TOTOLINK X5000R v9.1.0cu.2350_B20230313 was discovered to contain a command injection via the disconnectVPN function.

No fix yet
Fix from $1,950 2024-05-14