Vulnerability index

Browse CVEs

6,380 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness OS Command InjectionCWE-78 × clear
HIGH 8.8 CVE-2019-1614 A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote attacker to execute arbitrary commands with root p… Nx Os 7.0 / 7.3+ Fix from $1,9502019-03-11 CRITICAL 9.8 CVE-2019-9119EPSS 6% An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote a… M2 Firmware No fix yet Fix from $2,3002019-03-07 CRITICAL 9.8 CVE-2019-9120EPSS 6% An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote a… M2 Firmware No fix yet Fix from $2,3002019-03-07 CRITICAL 9.8 CVE-2019-9121 An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote a… M2 Firmware Mitigation only Fix from $2,3002019-03-07 CRITICAL 9.8 CVE-2019-9117EPSS 6% An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote a… M2 Firmware No fix yet Fix from $2,3002019-03-07 CRITICAL 9.8 CVE-2019-9118EPSS 6% An issue was discovered on Motorola C1 and M2 devices with firmware 1.01 and 1.07 respectively. This issue is a Command Injection allowing a remote a… M2 Firmware No fix yet Fix from $2,3002019-03-07 HIGH 7.8 CVE-2019-1591 A vulnerability in a specific CLI command implementation of Cisco Nexus 9000 Series ACI Mode Switch Software could allow an authenticated, local atta… Nx Os 14.0+ Fix from $1,9502019-03-06 HIGH 8.8 CVE-2019-3919 The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to command injection via crafted HTTP request sent by a remo… I 240w Q Gpon Ont Firmware No fix yet Fix from $1,9502019-03-05 HIGH 8.8 CVE-2019-3920 The Alcatel Lucent I-240W-Q GPON ONT using firmware version 3FE54567BOZJ19 is vulnerable to authenticated command injection via crafted HTTP request … I 240w Q Gpon Ont Firmware No fix yet Fix from $1,9502019-03-05 HIGH 7.8 CVE-2018-19639 If supportutils before version 3.1-5.7.1 is run with -v to perform rpm verification and the attacker manages to manipulate the rpm listing (e.g. with… Supportutils 3.1-5.7.1+ Fix from $1,9502019-03-05 HIGH 8.8 CVE-2019-1674EPSS 11% A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows could allow an authenticated… Webex Meetings 33.0.7 / 33.6.6+ Fix from $1,9502019-02-28 CRITICAL 9.8 CVE-2019-9194EPSS 97% elFinder before 2.1.48 has a command injection vulnerability in the PHP connector. Elfinder 2.1.48+ Fix from $2,3002019-02-26 CRITICAL 9.8 CVE-2018-20122 The web interface on FASTGate Fastweb devices with firmware through 0.00.47_FW_200_Askey 2017-05-17 (software through 1.0.1b) exposed a CGI binary th… Fastgate Firmware after 1.0.1b Fix from $2,3002019-02-21 HIGH 8.8 CVE-2018-15380 A vulnerability in the cluster service manager of Cisco HyperFlex Software could allow an unauthenticated, adjacent attacker to execute commands as t… Hyperflex Hx Data Platform Mitigation only Fix from $1,9502019-02-20 CRITICAL 9.8 CVE-2019-8427 daemonControl in includes/functions.php in ZoneMinder before 1.32.3 allows command injection via shell metacharacters. Zoneminder 1.32.3+ Fix from $2,3002019-02-18 HIGH 8.8 CVE-2019-8312EPSS 7% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8313EPSS 6% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8314EPSS 6% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8315EPSS 6% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8316EPSS 7% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8317EPSS 6% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8318EPSS 6% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.8 CVE-2019-8319EPSS 8% An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit… Dir 878 Firmware No fix yet Fix from $1,9502019-02-13 HIGH 8.6 CVE-2019-5736EPSS 98% runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtai… Docker 1.4.3 / 1.5.3+ Fix from $1,9502019-02-11 HIGH 8.8 CVE-2019-7632EPSS 6% LifeSize Team, Room, Passport, and Networker 220 devices allow Authenticated Remote OS Command Injection, as demonstrated by shell metacharacters in … Team 220 Firmware No fix yet Fix from $1,9502019-02-08 HIGH 7.8 CVE-2019-3704 VNX Control Station in Dell EMC VNX2 OE for File versions prior to 8.1.9.236 contains OS command injection vulnerability. Due to inadequate restricti… Emc Vnx2 Firmware 8.1.9.217+ Fix from $1,9502019-02-07 HIGH 7.2 CVE-2019-7301 Zen Load Balancer 3.10.1 allows remote authenticated admin users to execute arbitrary commands as root via shell metacharacters in the index.cgi?acti… Zen Load Balancer No fix yet Fix from $1,9502019-02-01 HIGH 8.1 CVE-2019-7298EPSS 10% An issue was discovered on D-Link DIR-823G devices with firmware through 1.02B03. A command Injection vulnerability allows attackers to execute arbit… Dir 823g Firmware after 1.02b03 Fix from $1,9502019-02-01 CRITICAL 9.8 CVE-2019-7297EPSS 12% An issue was discovered on D-Link DIR-823G devices with firmware through 1.02B03. A command Injection vulnerability allows attackers to execute arbit… Dir 823g Firmware after 1.02b03 Fix from $2,3002019-01-31 HIGH 7.3 CVE-2018-19015 An attacker could inject commands to launch programs and create, write, and read files on CX-Supervisor (Versions 3.42 and prior) through a specially… Cx Supervisor after 3.42 Fix from $1,9502019-01-28