CWE-78— OS Command Injection
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.— MITRE CWE catalog
6,272 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-78page 61 of 126
- CVE-2022-48590HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “admin dynamic app mib errors” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary…
- CVE-2022-48591HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the vendor_state parameter of the “vendor print report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the i…
- CVE-2022-48592HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the vendor_country parameter of the “vendor print report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the…
- CVE-2022-48593HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “topology data service” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL be…
- CVE-2022-48594HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “ticket watchers email” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL be…
- CVE-2022-48595HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “ticket template watchers” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL…
- CVE-2022-48596HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “ticket queue watchers” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL be…
- CVE-2022-48597HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “ticket event report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL befo…
- CVE-2022-48598HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “reporter events type date” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQ…
- CVE-2022-48599HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “reporter events type” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL bef…
- CVE-2022-48600HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “notes view” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL before being …
- CVE-2022-48601HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “network print report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL bef…
- CVE-2022-48602HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “message viewer print” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL bef…
- CVE-2022-48603HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “message viewer iframe” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL be…
- CVE-2022-48604HIGHCVSS 8.8EG 8.82023-08-09
A SQL injection vulnerability exists in the “logging export” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it directly to a SQL query. This allows for the injection of arbitrary SQL before be…
- CVE-2022-48616MEDIUMCVSS 6.4EG 6.42023-12-12
A Huawei data communication product has a command injection vulnerability. Successful exploitation of this vulnerability may allow attackers to gain higher privileges.
- CVE-2022-48624HIGHCVSS 7.8EG 7.82024-02-19
close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.
- CVE-2022-48684HIGHCVSS 8.4EG 8.42024-04-27
An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search template uses jinja templating for generating dynamic data. This could be abused to achieve code execution. Any user with acce…
- CVE-2022-4978CRITICALCVSS 9.3EG 9.32025-07-23
Remote Control Server, maintained by Steppschuh, 3.1.1.12 allows unauthenticated remote code execution when authentication is disabled, which is the default configuration. The server exposes a custom UDP-based control protocol that accept…
- CVE-2022-50596CRITICALCVSS 9.8EG 9.82025-11-06
D-Link DIR-1260 Wi-Fi router firmware versions up to and including v1.20B05 contain a command injection vulnerability within the web management interface that allows for unauthenticated attackers to execute arbitrary commands on the devi…
- CVE-2022-50691CRITICALCVSS 9.8EG 9.82025-12-30
MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the 'command' GET parameter. Attackers can exploit the /tpl/commands.sh endpoint by send…
- CVE-2022-50789HIGHCVSS 7.8EG 8.42025-12-30
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a command injection vulnerability that allows local authenticated users to create malicious files in the /tmp directory with .dns.pid extension. Unauthenticated attackers can execute the malicio…
- CVE-2022-50791HIGHCVSS 7.8EG 8.42025-12-30
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a conditional command injection vulnerability that allows local authenticated users to create malicious files in the /tmp directory. Unauthenticated attackers can execute commands by making a si…
- CVE-2022-50793HIGHCVSS 8.8EG 8.82025-12-30
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an authenticated command injection vulnerability in the www-data-handler.php script that allows attackers to inject system commands through the 'services' POST parameter. Attackers can exploit t…
- CVE-2022-50794CRITICALCVSS 9.8EG 9.82025-12-30
SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain an unauthenticated command injection vulnerability in the username parameter. Attackers can exploit index.php and login.php scripts by injecting arbitrary shell commands through …
- CVE-2022-50795HIGHCVSS 7.8EG 8.42025-12-30
SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains a conditional command injection vulnerability that allows local authenticated users to create malicious files in the /tmp directory. Unauthenticated attackers can execute commands by making a si…
- CVE-2022-50909HIGHCVSS 8.8EG 8.82026-01-13
Algo 8028 Control Panel version 3.3.3 contains a command injection vulnerability in the fm-data.lua endpoint that allows authenticated attackers to execute arbitrary commands. Attackers can exploit the insecure 'source' parameter by inject…
- CVE-2022-50919CRITICALCVSS 9.8EG 9.82026-01-13
Tdarr 2.00.15 contains an unauthenticated remote code execution vulnerability in its Help terminal that allows attackers to inject and chain arbitrary commands. Attackers can exploit the lack of input filtering by chaining commands like `-…
- CVE-2022-50994HIGHCVSS 8.1EG 8.12026-05-08
DrayTek Vigor 2960 firmware versions prior to 1.5.1.4 contain an OS command injection vulnerability in the CGI login handler that allows unauthenticated remote attackers to execute arbitrary commands by injecting shell metacharacters into …
- CVE-2023-0011HIGHCVSS 7.6EG 7.62023-12-20
A flaw in the input validation in TOBY-L2 allows a user to execute arbitrary operating system commands using specifically crafted AT commands. This vulnerability requires physical access to the serial interface of the module or the ability…
- CVE-2023-0118CRITICALCVSS 9.1EG 9.12023-09-20
An arbitrary code execution flaw was found in Foreman. This flaw allows an admin user to bypass safe mode in templates and execute arbitrary code on the underlying operating system.
- CVE-2023-0164HIGHCVSS 8.8EG 8.82023-01-18
OrangeScrum version 2.0.11 allows an authenticated external attacker to execute arbitrary commands on the server. This is possible because the application injects an attacker-controlled parameter into a system function.
- CVE-2023-0830HIGHCVSS 6.3EG 8.82023-02-14
A vulnerability classified as critical has been found in EasyNAS 1.1.0. Affected is the function system of the file /backup.pl. The manipulation leads to os command injection. It is possible to launch the attack remotely. The exploit has b…
- CVE-2023-0861HIGHCVSS 7.2EG 8.82023-02-16
NetModule NSRW web administration interface executes an OS command constructed with unsanitized user input. A successful exploit could allow an authenticated user to execute arbitrary commands with elevated privileges. This issue affects …
- CVE-2023-0935CRITICALCVSS 6.3EG 9.82023-02-21
A vulnerability was found in DolphinPHP up to 1.5.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file common.php of the component Incomplete Fix CVE-2021-46097. The manipulation of th…
- CVE-2023-1082HIGHCVSS 8.8EG 8.82024-04-09
An remote attacker with low privileges can perform a command injection which can lead to root access.
- CVE-2023-1277HIGHCVSS 7.8EG 7.82023-03-08
A vulnerability, which was classified as critical, was found in kylin-system-updater up to 1.4.20kord on Ubuntu Kylin. Affected is the function InstallSnap of the component Update Handler. The manipulation leads to command injection. The a…
- CVE-2023-1350CRITICALCVSS 6.3EG 9.82023-03-11
A vulnerability was found in liferea. It has been rated as critical. Affected by this issue is the function update_job_run of the file src/update.c of the component Feed Enrichment. The manipulation of the argument source with the input |d…
- CVE-2023-1698CRITICALCVSS 9.8EG 9.82023-05-15
In multiple products of WAGO a vulnerability allows an unauthenticated, remote attacker to create new users and change the device configuration which can result in unintended behaviour, Denial of Service and full system compromise.
- CVE-2023-1997HIGHCVSS 8.8EG 8.82023-08-28
An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x. A specially crafted HTTP request can lead to arbitrary command execution.
- CVE-2023-20007HIGHCVSS 4.7EG 7.22023-01-20
A vulnerability in the web-based management interface of Cisco Small Business RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code or cause the web-based mana…
- CVE-2023-20013MEDIUMCVSS 6.5EG 6.52023-08-16
Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands using root-level privileges. The attacker would need to have Administrator privileges on the…
- CVE-2023-20015MEDIUMCVSS 6.0EG 6.72023-02-23
A vulnerability in the CLI of Cisco Firepower 4100 Series, Cisco Firepower 9300 Security Appliances, and Cisco UCS 6200, 6300, 6400, and 6500 Series Fabric Interconnects could allow an authenticated, local attacker to inject unauthorized c…
- CVE-2023-20017MEDIUMCVSS 6.5EG 6.52023-08-16
Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands using root-level privileges. The attacker would need to have Administrator privileges on the…
- CVE-2023-20021MEDIUMCVSS 6.0EG 6.72023-04-05
Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To …
- CVE-2023-20022MEDIUMCVSS 6.0EG 6.72023-04-05
Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To …
- CVE-2023-20023MEDIUMCVSS 6.0EG 6.72023-04-05
Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, local attacker to perform command injection attacks on the underlying operating system and elevate privileges to root. To …
- CVE-2023-20036CRITICALCVSS 9.9EG 9.92024-11-15
A vulnerability in the web UI of Cisco IND could allow an authenticated, remote attacker to execute arbitrary commands with administrative privileges on the underlying operating system of an affected device. This vulnerability is due to…
- CVE-2023-20050HIGHCVSS 4.4EG 7.82023-02-23
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of…
- CVE-2023-20056MEDIUMCVSS 6.5EG 6.52023-03-23
A vulnerability in the management CLI of Cisco access point (AP) software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient input vali…
Map vulnerabilities like CWE-78 to your infrastructure
EchelonGraph correlates every CVE — across CWE-78 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →