Vulnerability index

Browse CVEs

6,380 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
MEDIUM 6.6 CVE-2023-46306 The web administration interface in NetModule Router Software (NRSW) 4.6 before 4.6.0.106 and 4.8 before 4.8.0.101 executes an OS command constructed… Netmodule Router Software 4.6.0.105 / 4.7.0.103+ Fix from $1,6002023-10-22 CRITICAL 9.8 CVE-2023-5684EPSS 78% A vulnerability was found in Byzoro Smart S85F Management Platform up to 20231012. It has been declared as critical. Affected by this vulnerability i… Smart S85f Firmware after 2023-10-12 Fix from $2,3002023-10-21 CRITICAL 9.8 CVE-2023-5683EPSS 18% A vulnerability was found in Byzoro Smart S85F Management Platform up to 20231010 and classified as critical. This issue affects some unknown process… Smart S85f Firmware after 2023-10-10 Fix from $2,3002023-10-21 HIGH 8.8 CVE-2023-46117 reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulner… Reconftw 2.7.1.1+ Fix from $1,9502023-10-20 HIGH 8.8 CVE-2023-23373 An OS command injection vulnerability has been reported to affect QUSBCam2. If exploited, the vulnerability could allow users to execute commands via… Qusbcam2 2.0.3+ Fix from $1,9502023-10-20 HIGH 8.8 CVE-2023-40145 In Weintek's cMT3000 HMI Web CGI device, an anonymous attacker can execute arbitrary commands after login to the device. Cmt Fhd Firmware 20210206 / 20210212+ Fix from $1,9502023-10-19 HIGH 8.8 CVE-2023-43959 An issue in YeaLinkSIP-T19P-E2 v.53.84.0.15 allows a remote privileged attacker to execute arbitrary code via a crafted request the ping function of … Sip T19p E2 Firmware No fix yet Fix from $1,9502023-10-17 CRITICAL 9.8 CVE-2023-3991 An OS command injection vulnerability exists in the httpd iperfrun.cgi functionality of FreshTomato 2023.3. A specially crafted HTTP request can lead… Freshtomato Mitigation only Fix from $2,3002023-10-16 CRITICAL 9.8 CVE-2023-45158 An OS command injection vulnerability exists in web2py 2.24.1 and earlier. When the product is configured to use notifySendHandler for logging (not t… Web2py after 2.24.1 Fix from $2,3002023-10-16 HIGH 7.2 CVE-2023-21413 GoSecure on behalf of Genetec Inc. has found a flaw that allows for a remote code execution during the installation of ACAP applications on the Axis … Axis Os 10.12.199 / 11.6.94+ Fix from $1,9502023-10-16 CRITICAL 9.8 CVE-2023-26155 All versions of the package node-qpdf are vulnerable to Command Injection such that the package-exported method encrypt() fails to sanitize its param… Node Qpdf No fix yet Fix from $2,3002023-10-14 HIGH 7.2 CVE-2023-32976 An OS command injection vulnerability has been reported to affect Container Station. If exploited, the vulnerability could allow authenticated admini… Container Station 2.6.7.44+ Fix from $1,9502023-10-13 HIGH 8.8 CVE-2023-34975 An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow… Video Station 5.7.0+ Fix from $1,9502023-10-13 CRITICAL 9.8 CVE-2023-45467 Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the ntpServIP parameter in the Time Settings. N3m Firmware No fix yet Fix from $2,3002023-10-13 HIGH 8.8 CVE-2023-34356EPSS 6% An OS command injection vulnerability exists in the data.cgi xfer_dns functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted HT… Surf Soho Firmware No fix yet Fix from $1,9502023-10-11 HIGH 8.8 CVE-2023-35193EPSS 6% An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially … Surf Soho Firmware No fix yet Fix from $1,9502023-10-11 HIGH 8.8 CVE-2023-35194EPSS 6% An OS command injection vulnerability exists in the api.cgi cmd.mvpn.x509.write functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially … Surf Soho Firmware No fix yet Fix from $1,9502023-10-11 HIGH 8.8 CVE-2023-27380EPSS 6% An OS command injection vulnerability exists in the admin.cgi USSD_send functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially crafted … Surf Soho Firmware No fix yet Fix from $1,9502023-10-11 HIGH 8.8 CVE-2023-28381EPSS 6% An OS command injection vulnerability exists in the admin.cgi MVPN_trial_init functionality of peplink Surf SOHO HW1 v6.3.5 (in QEMU). A specially cr… Surf Soho Firmware No fix yet Fix from $1,9502023-10-11 CRITICAL 9.8 CVE-2023-36550 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $2,3002023-10-10 HIGH 7.1 CVE-2023-41838 An improper neutralization of special elements used in an os command ('os command injection') in FortiManager 7.4.0 and 7.2.0 through 7.2.3 may allow… Fortianalyzer after 7.2.3 Fix from $1,9502023-10-10 MEDIUM 6.7 CVE-2023-42788 An improper neutralization of special elements used in an os command ('OS Command Injection') vulnerability [CWE-78] in FortiManager & FortiAnalyzer … Fortianalyzer after 7.2.3 Fix from $1,6002023-10-10 HIGH 7.8 CVE-2023-25607 An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78 ] in FortiManager 7.2.0 through 7… Fortiadc after 7.0.7 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-34985 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-34986 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-34987 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-34988 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-34989 A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $1,9502023-10-10 CRITICAL 9.8 CVE-2023-34992EPSS 80% A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute un… Fortisiem after 6.7.5 Fix from $2,3002023-10-10 CRITICAL 9.8 CVE-2023-34993EPSS 18% A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5… Fortiwlm after 8.6.5 Fix from $2,3002023-10-10