← Back
CWE-77

3,794 CVEs • Abstraction: Class • Likelihood of Exploit: High

Improper Neutralization of Special Elements used in a Command ('Command Injection')

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

JSON object

Loading...

CVEs (3,794)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Apache
Oracle
2Siebel E Billing
Struts
May 6, 2026
Apr 26, 2016
N/A· v4
8.1 HIGH· v3
9.3 HIGH· v2
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to chained expressions.
1Systech
1Syslink Sl 1000 Modular Gateway Firmware
May 6, 2026
Apr 25, 2016
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
flu.cgi in the web interface on SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 allows remote authenticated users to execute arbitrary commands via the 5066 (aka dnsmasq) param...Show more
flu.cgi in the web interface on SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 allows remote authenticated users to execute arbitrary commands via the 5066 (aka dnsmasq) parameter.Show less
1Opentext
1Vertica
May 6, 2026
Apr 20, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7.1.2-12, and 7.2.x before 7.2.2-1 allows remote attackers to execute arbitrary commands via the mcPo...Show more
The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7.1.2-12, and 7.2.x before 7.2.2-1 allows remote attackers to execute arbitrary commands via the mcPort parameter, aka ZDI-CAN-3417.Show less
2Debian
Xymon
2Debian Linux
Xymon
May 6, 2026
Apr 13, 2016
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacters in the adduser_name argument in (1) web/useradm.c or (2) web/chpasswd.c.
1Apache
2Directory Studio
Ldap Studio
May 6, 2026
Apr 11, 2016
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that i...Show more
The CSV export in Apache LDAP Studio and Apache Directory Studio before 2.0.0-M10 does not properly escape field values, which might allow attackers to execute arbitrary commands by leveraging a crafted LDAP entry that is interpreted as a formula when imported into a spreadsheet.Show less
1Sonicwall
3Analyzer
Global Management SystemUma Em5000 Firmware
May 6, 2026
Feb 17, 2016
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted XML data.
1Sonicwall
3Analyzer
Global Management SystemUma Em5000 Firmware
May 6, 2026
Feb 17, 2016
N/A· v4
9.9 CRITICAL· v3
9.0 HIGH· v2
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to conf...Show more
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to configuration input.Show less
1Ge
1Ups Snmp Web Adapter Firmware
May 6, 2026
Feb 5, 2016
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
General Electric (GE) Industrial Solutions UPS SNMP/Web Adapter devices with firmware before 4.8 allow remote authenticated users to execute arbitrary commands via unspecified vectors.
1Colorscore Project
1Colorscore
May 6, 2026
Jan 8, 2016
N/A· v4
10.0 CRITICAL· v3
10.0 HIGH· v2
The initialize method in the Histogram class in lib/colorscore/histogram.rb in the colorscore gem before 0.0.5 for Ruby allows context-dependent attackers to execute arbitrary code via shell metacharacters in the (1) ima...Show more
The initialize method in the Histogram class in lib/colorscore/histogram.rb in the colorscore gem before 0.0.5 for Ruby allows context-dependent attackers to execute arbitrary code via shell metacharacters in the (1) image_path, (2) colors, or (3) depth variable.Show less
1Ibm
1Tivoli Monitoring
May 6, 2026
Jan 3, 2016
N/A· v4
8.5 HIGH· v3
8.5 HIGH· v2
The portal in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 before FP7 allows remote authenticated users to execute arbitrary commands by leveraging Take Action view authority and providing...Show more
The portal in IBM Tivoli Monitoring (ITM) 6.2.2 through FP9, 6.2.3 through FP5, and 6.3.0 before FP7 allows remote authenticated users to execute arbitrary commands by leveraging Take Action view authority and providing crafted input.Show less
1Google
1Android
May 6, 2026
Nov 3, 2015
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Bluetooth in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows attackers to send commands to a debugging port, and consequently gain privileges, via a crafted application, as demonstrated by obtaining Signatur...Show more
Bluetooth in Android before 5.1.1 LMY48X and 6.0 before 2015-11-01 allows attackers to send commands to a debugging port, and consequently gain privileges, via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24371736.Show less
1Ibm
2Integration Bus
Websphere Message Broker
May 6, 2026
Oct 26, 2015
N/A· v4
N/A· v3
3.2 LOW· v2
IBM WebSphere Message Broker 8 before 8.0.0.6 and Integration Bus 9 before 9.0.0.4 do not check authorization for MQSISTARTMSGFLOW and MQSISTOPMSGFLOW commands, which allows local users to bypass intended access restrict...Show more
IBM WebSphere Message Broker 8 before 8.0.0.6 and Integration Bus 9 before 9.0.0.4 do not check authorization for MQSISTARTMSGFLOW and MQSISTOPMSGFLOW commands, which allows local users to bypass intended access restrictions, and start or stop a service, by issuing a command.Show less
1Ibm
2General Parallel File System
Spectrum Scale
May 6, 2026
Oct 26, 2015
N/A· v4
N/A· v3
7.2 HIGH· v2
IBM General Parallel File System (GPFS) 3.5.x before 3.5.0.27 and 4.1.x before 4.1.1.2 and Spectrum Scale 4.1.1.x before 4.1.1.2 allow local users to obtain root privileges for command execution via unspecified vectors.
1Solarwinds
1Log And Event Manager
May 6, 2026
Oct 15, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the traceroute functionality.
1Ibm
1Qradar Security Information And Event Manager
May 6, 2026
Oct 4, 2015
N/A· v4
N/A· v3
9.0 HIGH· v2
IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges by leveraging admin access.
1Ibm
1Qradar Security Information And Event Manager
May 6, 2026
Oct 4, 2015
N/A· v4
N/A· v3
9.0 HIGH· v2
The xmlrpc.cgi Webmin script in IBM QRadar SIEM 7.1 MR2 before Patch 11 IF02 and 7.2.x before 7.2.5 Patch 4 allows remote authenticated users to execute arbitrary commands with root privileges via unspecified vectors.
1Endian Firewall
1Endian Firewall
May 6, 2026
Sep 28, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
Endian Firewall before 3.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) NEW_PASSWORD_1 or (2) NEW_PASSWORD_2 parameter to cgi-bin/chpasswd.cgi.
1Symantec
1Web Gateway
May 6, 2026
Sep 20, 2015
N/A· v4
N/A· v3
8.3 HIGH· v2
The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary commands at boot time via unspecified vectors.
1Redhat
1Openshift
May 6, 2026
Sep 18, 2015
N/A· v4
N/A· v3
6.5 MEDIUM· v2
rubygem-openshift-origin-console in Red Hat OpenShift 2.2 allows remote authenticated users to execute arbitrary commands via a crafted request to the Broker.
1Synology
1Video Station
May 6, 2026
Sep 11, 2015
N/A· v4
N/A· v3
10.0 HIGH· v2
Synology Video Station before 1.5-0763 allows remote attackers to execute arbitrary shell commands via shell metacharacters in the subtitle_codepage parameter to subtitle.cgi.