Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2022-30525 KEVEPSS 100%
A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware v…
Usg Flex 100w Firmware
5.30+
MEDIUM 6.7
CVE-2021-30361
The Check Point Gaia Portal's GUI Clients allowed authenticated administrators with permission for the GUI Clients settings to inject a command that …
Gaia Portal
2022-04-13+
HIGH 7.8
CVE-2022-22454
IBM InfoSphere Information Server 11.7 could allow a locally authenticated attacker to execute arbitrary commands on the system by sending a speciall…
Infosphere Information Server On Cloud
Patch available
CRITICAL 9.8
CVE-2022-28910
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicename parameter in /setting/setDeviceNam…
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28911
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/CloudACMunualU…
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28912
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUpgradeFW.
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28913
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUploadSetti…
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28915EPSS 7%
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm.
Dir 816 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28895
A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate priv…
Dir 882 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28896
A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate pri…
Dir 882 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28901
A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileg…
Dir 882 Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28905
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicemac parameter in /setting/setDeviceName.
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28906
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the langtype parameter in /setting/setLanguageCfg.
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28907
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the hosttime function in /setting/NTPSyncWithHost.
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28908
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the ipdoamin parameter in /setting/setDiagnosisCf…
N600r Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28909
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the webwlanidx parameter in /setting/setWebWlanId…
N600r Firmware
No fix yet
HIGH 7.2
CVE-2022-27224
An issue was discovered in Galleon NTS-6002-GPS 4.14.103-Galleon-NTS-6002.V12 4. An authenticated attacker can perform command injection as root via …
Nts 6002 Gps Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28575
It is found that there is a command injection vulnerability in the setopenvpnclientcfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, …
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28577
It is found that there is a command injection vulnerability in the delParentalRules interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, whi…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28578
It is found that there is a command injection vulnerability in the setOpenVpnCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, which …
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28579
It is found that there is a command injection vulnerability in the setParentalRules interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, whi…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28580
It is found that there is a command injection vulnerability in the setL2tpServerCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, whi…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28581
It is found that there is a command injection vulnerability in the setWiFiAdvancedCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, w…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28582
It is found that there is a command injection vulnerability in the setWiFiSignalCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, whi…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28583
It is found that there is a command injection vulnerability in the setWiFiWpsCfg interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, which …
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-28584
It is found that there is a command injection vulnerability in the setWiFiWpsStart interface in TOTOlink A7100RU (v7.4cu.2313_b20191024) router, whic…
A7100ru Firmware
No fix yet
CRITICAL 9.8
CVE-2022-29592EPSS 20%
Tenda TX9 Pro 22.03.02.10 devices allow OS command injection via set_route (called by doSystemCmd_route).
Tx9 Pro Firmware
No fix yet
CRITICAL 9.8
CVE-2021-41739
A OS Command Injection vulnerability was discovered in Artica Proxy 4.30.000000. Attackers can execute OS commands in cyrus.events.php with GET param…
Artica Proxy
Mitigation only
HIGH 7.2
CVE-2022-20799
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authenticated, remote a…
Rv340 Firmware
1.0.03.27+
HIGH 7.2
CVE-2022-20801
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 and RV345 Routers could allow an authenticated, remote a…
Rv340 Firmware
1.0.03.27+