CWE-77
3,617 CVEs • Abstraction: Class • Likelihood of Exploit: High
Improper Neutralization of Special Elements used in a Command ('Command Injection')
The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.
CVEs (3,617)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The Parental Control panel in Genexis devices with DRGOS before 1.14.1 allows remote authenticated users to execute arbitrary CLI commands via the (1) start_hour, (2) start_minute, (3) end_hour, (4) end_minute, or (5) ho...Show more |
1Veritas 1Netbackup Appliance Firmware May 6, 2026 Jan 4, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 scripts/license.pl in Veritas NetBackup Appliance 2.6.0.x through 2.6.0.4, 2.6.1.x through 2.6.1.2, 2.7.x through 2.7.3, and 3.0.x allow remote attackers to execute arbitrary commands via shell metacharacters in the host...Show more |
1Western Digital 1Mycloud Nas May 6, 2026 Jan 3, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data. |
1Western Digital 1Mycloud Nas May 6, 2026 Jan 3, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 index.php page via a modified Cookie header. |
The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash do...Show more |
3Joomla Phpmailer ProjectWordpress3Joomla PhpmailerWordpressMay 6, 2026 Dec 30, 2016 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshell...Show more |
1Zend 2Zend Mail Zend FrameworkMay 6, 2026 Dec 30, 2016 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the m...Show more |
An issue was discovered in Pivotal Greenplum before 4.3.10.0. Creation of external tables using GPHDFS protocol has a vulnerability whereby arbitrary commands can be injected into the system. In order to exploit this vul...Show more |
Mailcwp remote file upload vulnerability incomplete fix v1.100 |
An issue was discovered in phpMyAdmin. A specially crafted database name could be used to run arbitrary PHP commands through the array export feature. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15....Show more |
1Zikula 1Zikula Application Framework May 6, 2026 Dec 5, 2016 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Directory traversal vulnerability in file "jcss.php" in Zikula 1.3.x before 1.3.11 and 1.4.x before 1.4.4 on Windows allows a remote attacker to launch a PHP object injection by uploading a serialized file. |
git-fastclone before 1.0.5 passes user modifiable strings directly to a shell command. An attacker can execute malicious commands by modifying the strings that are passed as arguments to "cd " and "git clone " commands i...Show more |
git-fastclone before 1.0.1 permits arbitrary shell command execution from .gitmodules. If an attacker can instruct a user to run a recursive clone from a repository they control, they can get a client to run an arbitrary...Show more |
1Ibm 1Security Guardium Database Activity Monitor May 6, 2026 Oct 22, 2016 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain administrator privileges for command execution via unspecified...Show more |
1Ibm 2Rational Collaborative Lifecycle Management Rational Quality ManagerMay 6, 2026 Oct 22, 2016 N/A· v4 8.8 HIGH· v3 6.5 MEDIUM· v2 IBM Rational Quality Manager (RQM) and Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.x before 4.0.7 iFix11, 5.x before 5.0.2 iFix17, and 6.x before 6.0.1 ifix3 allow remote authenticated users to ex...Show more |
1Ibm 1Security Guardium Database Activity Monitor May 6, 2026 Oct 21, 2016 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with root privileges via the...Show more |
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 allow local users to obtain root access via a crafted parameter to a command that is available in the sudo configuration. |
1Cisco 1Adaptive Security Appliance Software Apr 22, 2026 Aug 18, 2016 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges via invalid CLI commands, aka Bug ID CSCtu74257 or EPICBANANA. |
1Ibm 1Qradar Security Information And Event Manager May 6, 2026 Aug 8, 2016 N/A· v4 8.8 HIGH· v3 9.0 HIGH· v2 IBM Security QRadar SIEM 7.1.x and 7.2.x before 7.2.7 allows remote authenticated users to execute arbitrary OS commands as root via unspecified vectors. |
1Crestron 1Airmedia Am 100 Firmware May 6, 2026 Aug 3, 2016 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to execute arbitrary commands via a .. (dot dot) in the ATE_COMMAND parame...Show more |