← Back
CWE-78

6,736 CVEs • Abstraction: Base • Likelihood of Exploit: High

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

JSON object

Loading...

CVEs (6,736)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Inhandnetworks
1Ir302 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An OS command injection vulnerability exists in the console infactory_port functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attack...Show more
An OS command injection vulnerability exists in the console infactory_port functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.Show less
1Inhandnetworks
1Ir302 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
An OS command injection vulnerability exists in the httpd wlscan_ASP functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an...Show more
An OS command injection vulnerability exists in the httpd wlscan_ASP functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can make an authenticated HTTP request to trigger this vulnerability.Show less
1Inhandnetworks
1Ir302 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
8.8 HIGH· v3
9.0 HIGH· v2
An OS command injection vulnerability exists in the console infactory_wlan functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attack...Show more
An OS command injection vulnerability exists in the console infactory_wlan functionality of InHand Networks InRouter302 V3.5.37. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.Show less
1Inhandnetworks
1Ir302 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
An OS command injection vulnerability exists in the daretools binary functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to arbitrary command execution. An attacker can send...Show more
An OS command injection vulnerability exists in the daretools binary functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability.Show less
1Inhandnetworks
1Ir302 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
7.2 HIGH· v3
9.0 HIGH· v2
An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to command execution. An attacker can send a sequence...Show more
An OS command injection vulnerability exists in the console factory functionality of InHand Networks InRouter302 V3.5.4. A specially-crafted network request can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.Show less
1Contec
1Sv Cpt Mc310 Firmware
Jun 17, 2026
May 12, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
SolarView Compact ver.6.00 was discovered to contain a command injection vulnerability via conf_mail.php.
1Resi
1Gemini Net
Jun 17, 2026
May 12, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
resi-calltrace in RESI Gemini-Net 4.2 is affected by OS Command Injection. It does not properly check the parameters sent as input before they are processed on the server. Due to the lack of validation of user input, an...Show more
resi-calltrace in RESI Gemini-Net 4.2 is affected by OS Command Injection. It does not properly check the parameters sent as input before they are processed on the server. Due to the lack of validation of user input, an unauthenticated attacker can bypass the syntax intended by the software (e.g., concatenate `&|;\r\ commands) and inject arbitrary system commands with the privileges of the application user.Show less
1Zyxel
16Atp100 Firmware
Atp100w FirmwareAtp200 Firmware+13 more
Jun 17, 2026
May 12, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00...Show more
A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 50(W) firmware versions 5.10 through 5.21 Patch 1, USG20(W)-VPN firmware versions 5.10 through 5.21 Patch 1, ATP series firmware versions 5.10 through 5.21 Patch 1, VPN series firmware versions 4.60 through 5.21 Patch 1, which could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.Show less
1Checkpoint
2Gaia Os
Gaia Portal
Jun 17, 2026
May 11, 2022
N/A· v4
6.7 MEDIUM· v3
6.9 MEDIUM· v2
The Check Point Gaia Portal's GUI Clients allowed authenticated administrators with permission for the GUI Clients settings to inject a command that would run on the Gaia OS.
1Ibm
1Infosphere Information Server On Cloud
Jun 17, 2026
May 10, 2022
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
IBM InfoSphere Information Server 11.7 could allow a locally authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.
1Dlink
1Dir 816 Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUploadSetting.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/setUpgradeFW.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the filename parameter in /setting/CloudACMunualUpdate.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicename parameter in /setting/setDeviceName.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the webwlanidx parameter in /setting/setWebWlanIdx.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the ipdoamin parameter in /setting/setDiagnosisCfg.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the hosttime function in /setting/NTPSyncWithHost.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the langtype parameter in /setting/setLanguageCfg.
1Totolink
1N600r Firmware
Jun 17, 2026
May 10, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
TOTOLink N600R V5.3c.7159_B20190425 was discovered to contain a command injection vulnerability via the devicemac parameter in /setting/setDeviceName.