CWE-77— Command Injection
The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.— MITRE CWE catalog
4,102 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-77page 12 of 83
- CVE-2020-26273MEDIUMCVSS 5.2EG 5.22020-12-16
osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. In osquery before version 4.6.0, by using sqlite's ATTACH verb, someone with administrative access to osquery can cause reads and writes to arb…
- CVE-2020-26300MEDIUMCVSS 5.9EG 5.92021-09-09
systeminformation is an npm package that provides system and OS information library for node.js. In systeminformation before version 4.26.2 there is a command injection vulnerability. Problem was fixed in version 4.26.2 with a shell string…
- CVE-2020-26582HIGHCVSS 8.8EG 8.82020-10-06
D-Link DAP-1360U before 3.0.1 devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the IP JSON value for ping (aka res_config_action=3&res_config_id=18).
- CVE-2020-26670HIGHCVSS 8.8EG 8.82021-06-01
A vulnerability has been discovered in BigTree CMS 4.4.10 and earlier which allows an authenticated attacker to execute arbitrary commands through a crafted request sent to the server via the 'Create a New Setting' function.
- CVE-2020-26707CRITICALCVSS 9.8EG 9.82021-10-31
An issue was discovered in the add function in Shenzhim AAPTJS 1.3.1 which allows attackers to execute arbitrary code via the filePath parameter.
- CVE-2020-26772CRITICALCVSS 9.8EG 9.82021-09-08
Command Injection in PPGo_Jobs v2.8.0 allows remote attackers to execute arbitrary code via the 'AjaxRun()' function.
- CVE-2020-26902CRITICALCVSS 9.6EG 9.62020-10-09
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.15.25, RBR850 before 3.2.15.25, and RBS850 …
- CVE-2020-26907CRITICALCVSS 9.6EG 9.62020-10-09
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, and RBS850 before 3.2.16.6.
- CVE-2020-26909HIGHCVSS 8.8EG 8.82020-10-09
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7800 before 1.0.1.58 and R7500v2 before 1.0.3.48.
- CVE-2020-26910HIGHCVSS 8.4EG 8.42020-10-09
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.15.25, RBR850 before 3.2.1…
- CVE-2020-26914MEDIUMCVSS 6.7EG 6.72020-10-09
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before 1.0.1.24, R6020 before 1.0.0.42, R6050 before 1.0.1.24, R6080 before 1.0.0.42, R6…
- CVE-2020-26920HIGHCVSS 8.8EG 8.82020-10-09
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5.3.110, SRR60 before 2.5.3.110, and SRS60 before 2.5.3.110.
- CVE-2020-26922MEDIUMCVSS 6.4EG 6.42020-10-09
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.
- CVE-2020-26929HIGHCVSS 7.3EG 7.32020-10-09
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6220 before 1.1.0.100 and R6230 before 1.1.0.100.
- CVE-2020-27187HIGHCVSS 7.8EG 7.82020-10-26
An issue was discovered in KDE Partition Manager 4.1.0 before 4.2.0. The kpmcore_externalcommand helper contains a logic flaw in which the service invoking D-Bus is not properly checked. An attacker on the local machine can replace /etc/fs…
- CVE-2020-27227CRITICALCVSS 9.8EG 9.82021-04-13
An exploitable unatuhenticated command injection exists in the OpenClinic GA 5.173.3. Specially crafted web requests can cause commands to be executed on the server. An attacker can send a web request with parameters containing specific pa…
- CVE-2020-27240CRITICALCVSS 9.8EG 9.82021-04-19
An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The componentStatus parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL injection An attacker can make an authenti…
- CVE-2020-27241CRITICALCVSS 9.8EG 9.82021-04-19
An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The serialnumber parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL injection. An attacker can make an authentica…
- CVE-2020-27542MEDIUMCVSS 6.8EG 6.82021-01-26
Rostelecom CS-C2SHW 5.0.082.1 is affected by: Bash command injection. The camera reads configuration from QR code (including network settings). The static IP configuration from QR code is copied to the file /config/ip-static and after rebo…
- CVE-2020-27575HIGHCVSS 8.8EG 8.82021-03-08
Maxum Rumpus 8.2.13 and 8.2.14 is affected by a command injection vulnerability. The web administration contains functionality in which administrators are able to manage users. The edit users form contains a parameter vulnerable to command…
- CVE-2020-27862HIGHCVSS 8.8EG 8.82021-02-12
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DVA-2800 and DSL-2888A routers. Authentication is not required to exploit this vulnerability. The specific flaw exists withi…
- CVE-2020-27864HIGHCVSS 8.8EG 8.82021-02-12
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1860 firmware version 1.04B03 WiFi extenders. Authentication is not required to exploit this vulnerability. The specific…
- CVE-2020-27867MEDIUMCVSS 6.8EG 6.82021-02-12
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400…
- CVE-2020-28243HIGHCVSS 7.8EG 7.82021-02-27
An issue was discovered in SaltStack Salt before 3002.5. The minion's restartcheck is vulnerable to command injection via a crafted process name. This allows for a local privilege escalation by any user able to create a files on the minion…
- CVE-2020-28347CRITICALCVSS 9.8EG 9.82020-11-08
tdpServer on TP-Link Archer A7 AC1750 devices before 201029 allows remote attackers to execute arbitrary code via the slave_mac parameter. NOTE: this issue exists because of an incomplete fix for CVE-2020-10882 in which shell quotes are mi…
- CVE-2020-28422HIGHCVSS 6.4EG 7.82022-07-25
All versions of package git-archive are vulnerable to Command Injection via the exports function.
- CVE-2020-28423CRITICALCVSS 9.8EG 9.82022-08-02
This affects all versions of package monorepo-build.
- CVE-2020-28425CRITICALCVSS 7.3EG 9.82022-08-02
This affects all versions of package curljs.
- CVE-2020-28426HIGHCVSS 7.3EG 7.32021-02-01
All versions of package kill-process-on-port are vulnerable to Command Injection via a.getProcessPortId.
- CVE-2020-28429CRITICALCVSS 7.3EG 9.82021-02-23
All versions of package geojson2kml are vulnerable to Command Injection via the index.js file. PoC: var a =require("geojson2kml"); a("./","& touch JHU",function(){})
- CVE-2020-28433CRITICALCVSS 7.3EG 9.82022-08-02
This affects all versions of package node-latex-pdf.
- CVE-2020-28434CRITICALCVSS 9.4EG 9.82022-08-02
This affects all versions of package gitblame. The injection point is located in line 15 in lib/gitblame.js.
- CVE-2020-28435CRITICALCVSS 9.4EG 9.82022-07-25
This affects all versions of package ffmpeg-sdk. The injection point is located in line 9 in index.js.
- CVE-2020-28436CRITICALCVSS 7.3EG 9.82022-07-25
This affects all versions of package google-cloudstorage-commands.
- CVE-2020-28437CRITICALCVSS 9.4EG 9.82022-08-02
This affects all versions of package heroku-env. The injection point is located in lib/get.js which is required by index.js.
- CVE-2020-28438CRITICALCVSS 9.8EG 9.82022-07-25
This affects all versions of package deferred-exec. The injection point is located in line 42 in lib/deferred-exec.js
- CVE-2020-28443CRITICALCVSS 9.8EG 9.82022-07-25
This affects all versions of package sonar-wrapper. The injection point is located in lib/sonarRunner.js.
- CVE-2020-28445CRITICALCVSS 9.8EG 9.82022-07-25
This affects all versions of package npm-help. The injection point is located in line 13 in index.js file in export.latestVersion() function.
- CVE-2020-28446CRITICALCVSS 9.8EG 9.82022-07-25
The package ntesseract before 0.2.9 are vulnerable to Command Injection via lib/tesseract.js.
- CVE-2020-28447CRITICALCVSS 9.8EG 9.82022-07-25
This affects all versions of package xopen. The injection point is located in line 14 in index.js in the exported function xopen(filepath)
- CVE-2020-28451CRITICALCVSS 9.8EG 9.82022-08-02
This affects the package image-tiler before 2.0.2.
- CVE-2020-28453CRITICALCVSS 9.4EG 9.82022-08-02
This affects all versions of package npos-tesseract. The injection point is located in line 55 in lib/ocr.js.
- CVE-2020-28901CRITICALCVSS 9.8EG 9.82021-05-24
Command Injection in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation or Code Execution as root via vectors related to corrupt component installation in cmd_subsys.php.
- CVE-2020-28902CRITICALCVSS 9.8EG 9.82021-05-24
Command Injection in Nagios Fusion 4.1.8 and earlier allows Privilege Escalation from apache to root in cmd_subsys.php.
- CVE-2020-28908CRITICALCVSS 9.8EG 9.82021-05-24
Command Injection in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to nagios.
- CVE-2020-29056CRITICALCVSS 9.8EG 9.82020-11-24
An issue was discovered on CDATA 72408A, 9008A, 9016A, 92408A, 92416A, 9288, 97016, 97024P, 97028P, 97042P, 97084P, 97168P, FD1002S, FD1104, FD1104B, FD1104S, FD1104SN, FD1108S, FD1204S-R2, FD1204SN, FD1204SN-R2, FD1208S-R2, FD1216S-R1, FD…
- CVE-2020-29299HIGHCVSS 7.2EG 7.22020-12-27
Certain Zyxel products allow command injection by an admin via an input string to chg_exp_pwd during a password-change action. This affects VPN On-premise before ZLD V4.39 week38, VPN Orchestrator before SD-OS V10.03 week32, USG before ZLD…
- CVE-2020-29311CRITICALCVSS 9.8EG 9.82020-12-10
Ubilling v1.0.9 allows Remote Command Execution as Root user by executing a malicious command that is injected inside the config file and being triggered by another part of the software.
- CVE-2020-29381CRITICALCVSS 9.8EG 9.82020-11-29
An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 and V1.9.7, and V1600G2 V1.1.4 OLT devices. Command injection can occur in "upload tftp syslog" and "upload tftp configu…
- CVE-2020-29547MEDIUMCVSS 5.9EG 5.92023-05-29
An issue was discovered in Citadel through webcit-926. Meddler-in-the-middle attackers can pipeline commands after POP3 STLS, IMAP STARTTLS, or SMTP STARTTLS commands, injecting cleartext commands into an encrypted user session. This can l…
Map vulnerabilities like CWE-77 to your infrastructure
EchelonGraph correlates every CVE — across CWE-77 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →