Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2018-12237
The Symantec Reporter CLI 10.1 prior to 10.1.5.6 and 10.2 prior to 10.2.1.8 is susceptible to an OS command injection vulnerability. An authenticated…
Reporter
10.1.5.6 / 10.2.1.8+
HIGH 8.8
CVE-2019-1650
A vulnerability in the Cisco SD-WAN Solution could allow an authenticated, remote attacker to overwrite arbitrary files on the underlying operating s…
Vedge 100 Firmware
18.4.0+
HIGH 7.2
CVE-2019-1652 KEVEPSS 96%
A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers could allow an authenticat…
Rv320 Firmware
1.4.2.22+
HIGH 8.8
CVE-2018-17707
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Epic Games Launcher versions prior to 8.2.2. User…
Launcher
8.2.2+
HIGH 7.8
CVE-2019-1636EPSS 47%
A vulnerability in the Cisco Webex Teams client, formerly Cisco Spark, could allow an attacker to execute arbitrary commands on a targeted system. Th…
Webex Teams
Mitigation only
CRITICAL 9.8
CVE-2018-6444
A Vulnerability in Brocade Network Advisor versions before 14.1.0 could allow a remote unauthenticated attacker to execute arbitray code. The vulnera…
Network Advisor
14.1.0+
HIGH 8.8
CVE-2019-6487EPSS 9%
TP-Link WDR Series devices through firmware v3 (such as TL-WDR5620 V3.0) are affected by command injection (after login) leading to remote code execu…
Tl Wdr5620 Firmware
after 3.0
HIGH 8.8
CVE-2018-20727EPSS 6%
Multiple command injection vulnerabilities in NeDi before 1.7Cp3 allow authenticated users to execute code on the server side via the flt parameter t…
Nedi
after 1.7c
CRITICAL 9.8
CVE-2018-16184
RICOH Interactive Whiteboard D2200 V1.6 to V2.2, D5500 V1.6 to V2.2, D5510 V1.6 to V2.2, and the display versions with RICOH Interactive Whiteboard C…
D2200 Firmware
after 2.2
HIGH 7.2
CVE-2018-16194
Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier) allows authenticated a…
Aterm Wf1200cr Firmware
after 1.1.1
HIGH 8.8
CVE-2018-16195
Aterm WF1200CR and Aterm WG1200CR (Aterm WF1200CR firmware Ver1.1.1 and earlier, Aterm WG1200CR firmware Ver1.0.1 and earlier) allows an attacker on …
Aterm Wf1200cr Firmware
after 1.1.1
HIGH 8.8
CVE-2018-16200
Toshiba Home gateway HEM-GW16A 1.2.9 and earlier, Toshiba Home gateway HEM-GW26A 1.2.9 and earlier allows an attacker on the same network segment to …
Hem Gw16a Firmware
after 1.2.9
CRITICAL 9.8
CVE-2018-16167EPSS 75%
LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
Logontracer
after 1.2.0
HIGH 7.2
CVE-2018-0638
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via import.cgi encKey parameter.
Aterm Hc100rc Firmware
after 1.0.1
HIGH 7.2
CVE-2018-0639
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via tools_firmware.cgi date parameter, …
Aterm Hc100rc Firmware
after 1.0.1
MEDIUM 6.8
CVE-2018-0677
BN-SDWBP3 firmware version 1.0.9 and earlier allows attacker with administrator rights on the same network segment to execute arbitrary OS commands v…
Bn Sdwbp3 Firmware
after 1.0.9
HIGH 7.2
CVE-2018-0625
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via formSysCmd parameter.
Aterm Wg1200hp Firmware
after 1.0.31
HIGH 7.2
CVE-2018-0626
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via sysCmd in formWsc parame…
Aterm Wg1200hp Firmware
after 1.0.31
HIGH 7.2
CVE-2018-0627
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via targetAPSsid parameter.
Aterm Wg1200hp Firmware
after 1.0.31
HIGH 7.2
CVE-2018-0628
Aterm WG1200HP firmware Ver1.0.31 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and respons…
Aterm Wg1200hp Firmware
after 1.0.31
HIGH 7.2
CVE-2018-0629
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via HTTP request and response.
Aterm W300p Firmware
after 1.0.13
HIGH 7.2
CVE-2018-0630
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via sysCmd parameter.
Aterm W300p Firmware
after 1.0.13
HIGH 7.2
CVE-2018-0631
Aterm W300P Ver1.0.13 and earlier allows attacker with administrator rights to execute arbitrary OS commands via targetAPSsid parameter.
Aterm W300p Firmware
after 1.0.13
HIGH 7.2
CVE-2018-0634
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter or bootmo…
Aterm Hc100rc Firmware
after 1.0.1
HIGH 7.2
CVE-2018-0635
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via filename parameter.
Aterm Hc100rc Firmware
after 1.0.1
HIGH 7.2
CVE-2018-0636
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via FactoryPassword parameter of a cert…
Aterm Hc100rc Firmware
after 1.0.1
HIGH 7.2
CVE-2018-0637
Aterm HC100RC Ver1.0.1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via export.cgi encKey parameter.
Aterm Hc100rc Firmware
after 1.0.1
CRITICAL 9.8
CVE-2018-20114EPSS 7%
On D-Link DIR-818LW Rev.A 2.05.B03 and DIR-860L Rev.B 2.03.B03 devices, unauthenticated remote OS command execution can occur in the soap.cgi service…
Dir 818lw Firmware
No fix yet
CRITICAL 9.8
CVE-2018-6342
react-dev-utils on Windows allows developers to run a local webserver for accepting various commands, including a command to launch an editor. The in…
React Dev Utils
1.0.4 / 2.0.2+
HIGH 8.1
CVE-2018-18600
The remote upgrade feature in Guardzilla GZ180 devices allow command injection via a crafted new firmware version parameter.
180 Outdoor Firmware
Mitigation only