Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2008-5516
The web interface in git (gitweb) 1.5.x before 1.5.5 allows remote attackers to execute arbitrary commands via shell metacharacters related to git_se…
Git
Mitigation only
HIGH 9.3
CVE-2008-5718
The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute…
Netatalk
after 2.0.3
HIGH 10.0
CVE-2008-4304
general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified inpu…
Phpcollab
after 2.5
HIGH 7.2
CVE-2008-4636
yast2-backup 2.14.2 through 2.16.6 on SUSE Linux and Novell Linux allows local users to gain privileges via shell metacharacters in filenames used by…
Yast2 Backup
after 2.16.6
HIGH 10.0
CVE-2008-4796EPSS 9%
The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamat…
Debian Linux
2.6.3 / 4.2.2+
MEDIUM 6.8
CVE-2008-2575
cbrPager before 0.9.17 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a (1) ZIP (aka .cbz) or (2) RA…
Fedora
0.9.17+
HIGH 7.5
CVE-2007-5322EPSS 19%
Insecure method vulnerability in the FPOLE.OCX 6.0.8450.0 ActiveX control in Microsoft Visual FoxPro 6.0 allows remote attackers to execute arbitrary…
Visual Foxpro
No fix yet
MEDIUM 6.8
CVE-2007-4891EPSS 31%
A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) StartProcess, (2) SyncShell, (3…
Visual Studio
No fix yet
HIGH 7.6
CVE-2007-4560EPSS 84%
clamav-milter in ClamAV before 0.91.2, when run in black hole mode, allows remote attackers to execute arbitrary commands via shell metacharacters th…
Clamav
after 0.91.1
MEDIUM 6.8
CVE-2007-4041EPSS 20%
Multiple argument injection vulnerabilities in Mozilla Firefox 2.0.0.5 and 3.0alpha allow remote attackers to execute arbitrary commands via a NULL b…
Firefox
Mitigation only
HIGH 7.5
CVE-2006-6427
The Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allows r…
Workcentre
Patch available
HIGH 7.5
CVE-2006-0325
Etomite Content Management System 0.6, and possibly earlier versions, when downloaded from the web site in January 2006 after January 10, contains a …
Etomite
after 0.6
HIGH 9.3
CVE-2005-2368
vim 6.3 before 6.3.082, with modelines enabled, allows external user-assisted attackers to execute arbitrary commands via shell metacharacters in the…
Vim
Patch available
HIGH 10.0
CVE-2003-0041
Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.
Linux
Patch available
HIGH 7.5
CVE-2002-1660EPSS 11%
calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command parameter.
Vbulletin
after 2.1.9
HIGH 7.2
CVE-2002-1898
Terminal 1.3 in Apple Mac OS X 10.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a telnet:// link, which is exec…
Terminal
1.3.1+
HIGH 7.5
CVE-2002-0061EPSS 50%
Apache for Win32 before 1.3.24, and 2.0.x before 2.0.34-beta, allows remote attackers to execute arbitrary commands via shell metacharacters (a | pip…
HTTP Server
1.3.24 / 2.0.34+
HIGH 10.0
CVE-2001-1583EPSS 83%
lpd daemon (in.lpd) in Solaris 8 and earlier allows remote attackers to execute arbitrary commands via a job request with a crafted control file that…
Sunos
after 5.9
CRITICAL 9.8
CVE-1999-0043EPSS 45%
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
Linux
Mitigation only
HIGH 10.0
CVE-1999-0067EPSS 87%
phf CGI program allows remote command execution through shell metacharacters.
HTTP Server
Mitigation only