CWE-77— Command Injection
The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.— MITRE CWE catalog
4,331 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-77page 59 of 87
- CVE-2025-26262MEDIUMCVSS 6.5EG 6.52025-05-06
An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5 allows attackers to escalate privileges and execute arbitrary code via supplying a file that contains a crafted filename.
- CVE-2025-26331HIGHCVSS 7.8EG 7.82025-03-07
Dell ThinOS 2411 and prior, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to…
- CVE-2025-26385CRITICALCVSS 9.5EG 9.52026-01-30
Johnson Controls Metasys component listed below have Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability . Successful exploitation of this vulnerability could allow remote SQL execution This iss…
- CVE-2025-26627HIGHCVSS 7.0EG 7.02025-03-11
Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized attacker to elevate privileges locally.
- CVE-2025-2701MEDIUMCVSS 6.3EG 6.32025-03-24
A vulnerability classified as critical was found in AMTT Hotel Broadband Operation System 1.0. This vulnerability affects the function popen of the file /manager/network/port_setup.php. The manipulation of the argument SwitchVersion/Switch…
- CVE-2025-27083HIGHCVSS 7.2EG 7.22025-04-08
Authenticated command injection vulnerabilities exist in the AOS-10 GW and AOS-8 Controller/Mobility Conductor web-based management interface. Successful exploitation of these vulnerabilities allows an Authenticated attacker to execute arb…
- CVE-2025-27146LOWCVSS 2.7EG 2.72025-02-25
matrix-appservice-irc is a Node.js IRC bridge for Matrix. The matrix-appservice-irc bridge up to version 3.0.3 contains a vulnerability which can lead to arbitrary IRC command execution as the puppeted user. The attacker can only inject co…
- CVE-2025-2717MEDIUMCVSS 4.7EG 4.72025-03-25
A vulnerability, which was classified as critical, has been found in D-Link DIR-823X 240126/240802. This issue affects the function sub_41710C of the file /goform/diag_nslookup of the component HTTP POST Request Handler. The manipulation o…
- CVE-2025-27211HIGHCVSS 7.5EG 7.52025-08-04
An Improper Input Validation in EdgeMAX EdgeSwitch (Version 1.10.4 and earlier) could allow a Command Injection by a malicious actor with access to EdgeSwitch adjacent network.
- CVE-2025-27212CRITICALCVSS 9.8EG 9.82025-08-04
An Improper Input Validation in certain UniFi Access devices could allow a Command Injection by a malicious actor with access to UniFi Access management network. Affected Products: UniFi Access Reader Pro (Version 2.14.21 and earl…
- CVE-2025-27233MEDIUMCVSS 5.7EG 5.72025-09-12
Zabbix Agent 2 smartctl plugin does not properly sanitize smart.disk.get parameters, allowing an attacker to inject unexpected arguments into the smartctl command. This can be used to leak the NTLMv2 hash from a Windows system.
- CVE-2025-2725HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability classified as critical was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. Affected by this vulnerability is an unknown functionality of the file /api/login/auth of the co…
- CVE-2025-2726HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability, which was classified as critical, has been found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. Affected by this issue is some unknown functionality of the file /api/esps of t…
- CVE-2025-2727HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability, which was classified as critical, was found in H3C Magic NX30 Pro up to V100R007. This affects an unknown part of the file /api/wizard/getNetworkStatus of the component HTTP POST Request Handler. The manipulation leads to …
- CVE-2025-2728HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability has been found in H3C Magic NX30 Pro and Magic NX400 up to V100R014 and classified as critical. This vulnerability affects unknown code of the file /api/wizard/getNetworkConf. The manipulation leads to command injection. Th…
- CVE-2025-2729HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014 and classified as critical. This issue affects some unknown processing of the file /api/wizard/networkSetup of the compo…
- CVE-2025-2730HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. It has been classified as critical. Affected is an unknown function of the file /api/wizard/getssidname of the componen…
- CVE-2025-2731HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /api/wizard/ge…
- CVE-2025-2732HIGHCVSS 8.0EG 8.82025-03-25
A vulnerability was found in H3C Magic NX15, Magic NX30 Pro, Magic NX400, Magic R3010 and Magic BE18000 up to V100R014. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/wizard/getWifiNeig…
- CVE-2025-2733MEDIUMCVSS 6.3EG 6.32025-03-25
A vulnerability classified as critical has been found in mannaandpoem OpenManus up to 2025.3.13. This affects an unknown part of the file app/tool/python_execute.py of the component Prompt Handler. The manipulation leads to os command inje…
- CVE-2025-27423HIGHCVSS 7.1EG 7.12025-03-03
Vim is an open source, command line text editor. Vim is distributed with the tar.vim plugin, that allows easy editing and viewing of (compressed or uncompressed) tar files. Starting with 9.1.0858, the tar.vim plugin uses the ":read" ex com…
- CVE-2025-27953MEDIUMCVSS 6.5EG 6.52025-06-02
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the session management component.
- CVE-2025-27954MEDIUMCVSS 6.5EG 6.52025-06-02
An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the usertoken function of default.aspx.
- CVE-2025-28017MEDIUMCVSS 6.5EG 6.52025-04-23
TOTOLINK A800R V4.1.2cu.5032_B20200408 is vulnerable to Command Injection in downloadFile.cgi via the QUERY_STRING parameter.
- CVE-2025-28142MEDIUMCVSS 6.5EG 6.52025-04-15
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3_1.0.15 was discovered to contain a command injection vulnerability via the foldername in /boafrm/formDiskCreateShare.
- CVE-2025-28143MEDIUMCVSS 6.5EG 6.52025-04-15
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3_1.0.15 was discovered to contain a command injection vulnerability via the groupname at the /boafrm/formDiskCreateGroup.
- CVE-2025-28145MEDIUMCVSS 6.5EG 6.52025-04-15
Edimax AC1200 Wave 2 Dual-Band Gigabit Router BR-6478AC V3 1.0.15 was discovered to contain a command injection vulnerability via partition in /boafrm/formDiskFormat.
- CVE-2025-29062CRITICALCVSS 9.8EG 9.82025-04-02
An issue in BL-AC2100 <=V1.0.4 allows a remote attacker to execute arbitrary code via the time1 and time2 parameters in the set_LimitClient_cfg of the goahead webservice.
- CVE-2025-29063CRITICALCVSS 9.8EG 9.82025-04-02
An issue in BL-AC2100 V1.0.4 and before allows a remote attacker to execute arbitrary code via the enable parameter passed to /goform/set_hidessid_cfg is not handled properly.
- CVE-2025-29083MEDIUMCVSS 6.5EG 6.52025-09-23
SQL Injection vulnerability in CSZ-CMS v.1.3.0 allows a remote attacker to execute arbitrary code via the execSqlFile function in the Plugin_Manager.php file.
- CVE-2025-29154MEDIUMCVSS 6.5EG 6.52025-05-07
HTML injection vulnerability in lemeconsultoria HCM galera.app v.4.58.0 allows an attacker to execute arbitrary code via the .galera.app/ted/solicitacao_treinamento/, .galera.app/rh/metas/perspectiva_estrategica/edicao/, .galera.app/rh/cad…
- CVE-2025-29155MEDIUMCVSS 6.5EG 6.52025-09-25
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via the DELETE endpoint
- CVE-2025-29157MEDIUMCVSS 6.5EG 6.52025-09-25
An issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/cart, the server returns a 404-error page exposing sensitive information including the Servlet name (default) and server …
- CVE-2025-2916MEDIUMCVSS 6.3EG 6.32025-03-28
A vulnerability, which was classified as critical, has been found in Aishida Call Center System up to 20250314. This issue affects some unknown processing of the file /doscall/weixin/open/amr2mp3. The manipulation of the argument File lead…
- CVE-2025-29209CRITICALCVSS 9.8EG 9.82025-04-18
TOTOLINK X18 v9.1.0cu.2024_B20220329 has an unauthorized arbitrary command execution in the enable parameter' of the sub_41105C function of cstecgi .cgi.
- CVE-2025-29223HIGHCVSS 6.3EG 8.82025-03-21
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the pt parameter in the traceRoute function.
- CVE-2025-29226HIGHCVSS 6.3EG 8.32025-03-21
In Linksys E5600 V1.1.0.26, the \usr\share\lua\runtime.lua file contains a command injection vulnerability in the runtime.pingTest function via the pt["count"] parameter.
- CVE-2025-29227HIGHCVSS 6.3EG 8.82025-03-21
In Linksys E5600 V1.1.0.26, the \usr\share\lua\runtime.lua file contains a command injection vulnerability in the runtime.pingTest function via the pt["pkgsize"] parameter.
- CVE-2025-29228CRITICALCVSS 9.8EG 9.82025-12-23
Linksys E5600 V1.1.0.26 is vulnerable to command injection in the runtime.macClone function via the mc.ip parameter.
- CVE-2025-29229CRITICALCVSS 9.8EG 9.82025-12-23
linksys E5600 V1.1.0.26 is vulnerable to command injection in the function ddnsStatus.
- CVE-2025-29230HIGHCVSS 8.6EG 8.62025-03-21
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.emailReg function. The vulnerability can be triggered via the `pt["email"]` parameter.
- CVE-2025-29296CRITICALCVSS 9.8EG 9.82026-08-04
H3C Magic BE18000 V200R007, H3C NX400 V100R015, H3C Magic NX30 Pro V100R0011, H3C Magic R3010 V100R009, H3C Magic NX15 V100R017, H3C Magic R1510 V100R016, H3C NE36 Pro V100R002 and H3C MC102G HM1A0V200R010 contain multiple command injectio…
- CVE-2025-29509CRITICALCVSS 8.8EG 9.82025-05-09
Jan v0.5.14 and before is vulnerable to remote code execution (RCE) when the user clicks on a rendered link in the conversation, due to opening external website in the app and the exposure of electronAPI, with a lack of filtering of URL wh…
- CVE-2025-29516HIGHCVSS 7.2EG 7.22025-08-25
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the backup function.
- CVE-2025-29517MEDIUMCVSS 6.8EG 6.82025-08-25
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the traceroute6 function.
- CVE-2025-29519MEDIUMCVSS 5.3EG 5.32025-08-25
A command injection vulnerability in the EXE parameter of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to execute arbitrary commands via supplying a crafted GET request.
- CVE-2025-29522MEDIUMCVSS 6.5EG 6.52025-08-25
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the ping function.
- CVE-2025-29523HIGHCVSS 7.2EG 7.22025-08-25
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the ping6 function.
- CVE-2025-29628CRITICALCVSS 9.4EG 9.42025-07-25
A Gardyn Azure IoT Hub connection string is downloaded over an insecure HTTP connection in Gardyn Home Kit firmware before master.619, Home Kit Mobile Application before 2.11.0, and Home Kit Cloud API before 2.12.2026 leaving the string vu…
- CVE-2025-29635CRITICALCVSS 7.2EG 9.0⚠ KEV2025-03-25
A command injection vulnerability in D-Link DIR-823X 240126 and 240802 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function, trigg…
Map vulnerabilities like CWE-77 to your infrastructure
EchelonGraph correlates every CVE — across CWE-77 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →