Vulnerability index

Browse CVEs

6,380 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
HIGH 7.2 CVE-2023-20128EPSS 30% Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an au… Rv320 Firmware Mitigation only Fix from $1,9502023-04-05 MEDIUM 6.7 CVE-2023-20022 Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman… Identity Services Engine Mitigation only Fix from $1,6002023-04-05 MEDIUM 6.7 CVE-2023-20023 Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman… Identity Services Engine Mitigation only Fix from $1,6002023-04-05 MEDIUM 6.7 CVE-2023-20021 Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform comman… Identity Services Engine Mitigation only Fix from $1,6002023-04-05 CRITICAL 9.8 CVE-2023-26921 OS Command Injection vulnerability in quectel AG550QCN allows attackers to execute arbitrary commands via ql_atfwd. Ag550qcn Firmware No fix yet Fix from $2,3002023-04-04 HIGH 8.8 CVE-2023-28726 Panasonic AiSEG2 versions 2.80F through 2.93A allows remote attackers to execute arbitrary OS commands. Aiseg2 Firmware after 2.93a Fix from $1,9502023-03-31 HIGH 8.8 CVE-2023-26482 Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed users to create workflows which… Nextcloud Server 20.0.14.12 / 21.0.9.10+ Fix from $1,9502023-03-30 HIGH 8.8 CVE-2022-43644 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 HIGH 8.8 CVE-2022-43645 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 HIGH 8.8 CVE-2022-43646 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 HIGH 8.8 CVE-2022-43647 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 MEDIUM 6.8 CVE-2022-43631 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43632 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43633 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 HIGH 8.8 CVE-2022-43642 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 HIGH 8.8 CVE-2022-43643 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-825 1.0.9/EE routers. Authenti… Dir 825\/ee Firmware after 1.0.9 Fix from $1,9502023-03-29 MEDIUM 6.8 CVE-2022-43624 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43626 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43627 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43628 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 MEDIUM 6.8 CVE-2022-43629 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. Although au… Dir 1935 Firmware after 1.02 Fix from $1,6002023-03-29 HIGH 8.8 CVE-2022-3210 This vulnerability allows network-adjacent attackers to execute arbitrary commands on affected installations of D-Link DIR-2150 4.0.1 routers. Authen… Dir 2150 Firmware after 4.0.1 Fix from $1,9502023-03-29 HIGH 8.0 CVE-2022-42433 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of TP-Link TL-WR841N TL-WR841N(US)_V14_22012… Tl Wr841 Firmware 220914+ Fix from $1,9502023-03-29 HIGH 8.0 CVE-2022-27647 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers… Cax80 Firmware 1.0.1.78 / 1.0.4.126+ Fix from $1,9502023-03-29 HIGH 7.2 CVE-2023-23355 An OS command injection vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows remote auth… Qvr 5.0.1.2346+ Fix from $1,9502023-03-29 CRITICAL 9.8 CVE-2023-27394EPSS 18% Osprey Pump Controller version 1.01 is vulnerable an unauthenticated OS command injection vulnerability. This can be exploited to inject and execute … Osprey Pump Controller Firmware Mitigation only Fix from $2,3002023-03-28 CRITICAL 9.8 CVE-2023-27886 Osprey Pump Controller version 1.01 is vulnerable to an unauthenticated OS command injection vulnerability. This can be exploited to inject and execu… Osprey Pump Controller Firmware Mitigation only Fix from $2,3002023-03-28 CRITICAL 9.6 CVE-2023-28102 discordrb is an implementation of the Discord API using Ruby. In discordrb before commit `91e13043ffa` the `encoder.rb` file unsafely constructs a sh… Discordrb 2023-03-08+ Fix from $2,3002023-03-27 HIGH 8.8 CVE-2023-28627 pymedusa is an automatic video library manager for TV Shows. In versions prior 1.0.12 an attacker with access to the web interface can update the git… Medusa 1.0.12+ Fix from $1,9502023-03-27 HIGH 7.2 CVE-2023-24841 HGiga MailSherlock query function for connection log has a vulnerability of insufficient filtering for user input. An authenticated remote attacker w… Oaklouds Mailsherlock Mitigation only Fix from $1,9502023-03-27