CWE-88— Argument Injection or Modification
340 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-88page 3 of 7
- CVE-2020-6799HIGHCVSS 8.8EG 8.82020-03-02
Command line arguments could have been injected during Firefox invocation as a shell handler for certain unsupported file types. This required Firefox to be configured as the default handler for a given file type and for a file downloaded …
- CVE-2020-7496HIGHCVSS 7.8EG 7.82020-06-16
A CWE-88: Argument Injection or Modification vulnerability exists in EcoStruxure Operator Terminal Expert 3.1 Service Pack 1 and prior (formerly known as Vijeo XD)which could cause unauthorized write access when opening the project file.
- CVE-2020-7769HIGHCVSS 8.6EG 8.62020-11-12
This affects the package nodemailer before 6.4.16. Use of crafted recipient email addresses may result in arbitrary command flag injection in sendmail transport for sending mails.
- CVE-2020-7808HIGHCVSS 8.7EG 9.82020-05-21
In RAONWIZ K Upload v2018.0.2.51 and prior, automatic update processing without integrity check on update module(web.js) allows an attacker to modify arguments which causes downloading a random DLL and injection on it.
- CVE-2020-7850HIGHCVSS 7.8EG 7.82021-03-29
NBBDownloader.ocx ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the activex method. A remote attacker could induce a user to access a crafted w…
- CVE-2020-7851HIGHCVSS 7.8EG 7.82021-04-19
Innorix Web-Based File Transfer Solution versuibs prior to and including 9.2.18.385 contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the internal method. A remote attacker cou…
- CVE-2021-1383MEDIUMCVSS 6.0EG 6.72021-03-24
Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges. These vulnerabilities are due to insufficient input validation…
- CVE-2021-1454MEDIUMCVSS 6.0EG 6.02021-03-24
Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges. These vulnerabilities are due to insufficient input validation…
- CVE-2021-1484MEDIUMCVSS 6.5EG 6.52024-11-15
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to inject arbitrary commands on an affected system and cause a denial of service (DoS) condition. This vulnerability is due …
- CVE-2021-1485MEDIUMCVSS 6.6EG 6.62021-04-08
A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges on the underlying Linux operating system (OS) of an affected device. This …
- CVE-2021-1531HIGHCVSS 8.8EG 8.82021-05-22
A vulnerability in the web UI of Cisco Modeling Labs could allow an authenticated, remote attacker to execute arbitrary commands with the privileges of the web application on the underlying operating system of an affected Cisco Modeling La…
- CVE-2021-21384MEDIUMCVSS 6.3EG 6.32021-03-19
shescape is a simple shell escape package for JavaScript. In shescape before version 1.1.3, anyone using _Shescape_ to defend against shell injection may still be vulnerable against shell injection if the attacker manages to insert a into …
- CVE-2021-21386CRITICALCVSS 9.3EG 9.32021-03-24
APKLeaks is an open-source project for scanning APK file for URIs, endpoints & secrets. APKLeaks prior to v2.0.3 allows remote attackers to execute arbitrary OS commands via package name inside application manifest. An attacker could inclu…
- CVE-2021-21814HIGHCVSS 7.8EG 7.82021-08-13
Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line. filepattern is passed directly to strlen to determine the ending location of the char* passed in by the user, n…
- CVE-2021-24002HIGHCVSS 8.8EG 8.82021-06-24
When a user clicked on an FTP URL containing encoded newline characters (%0A and %0D), the newlines would have been interpreted as such and allowed arbitrary commands to be sent to the FTP server. This vulnerability affects Firefox ESR < 7…
- CVE-2021-24030CRITICALCVSS 9.8EG 9.82021-03-10
The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable. That allows a malicious URL to cause code execution. This issue affects versions prior to v1.26.0.
- CVE-2021-26937CRITICALCVSS 9.8EG 9.82021-02-09
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.
- CVE-2021-27201HIGHCVSS 8.8EG 8.82021-02-15
Endian Firewall Community (aka EFW) 3.3.2 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in a backup comment.
- CVE-2021-29461HIGHCVSS 8.1EG 8.12021-04-20
Discord Recon Server is a bot that allows one to do one's reconnaissance process from one's Discord. A vulnerability in Discord Recon Server prior to 0.0.3 could be exploited to read internal files from the system and write files into the …
- CVE-2021-29472HIGHCVSS 8.8EG 8.82021-04-27
Composer is a dependency manager for PHP. URLs for Mercurial repositories in the root composer.json and package source download URLs are not sanitized correctly. Specifically crafted URL values allow code to be executed in the HgDriver if …
- CVE-2021-3045MEDIUMCVSS 4.9EG 4.92021-08-11
An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administrator to read any arbitrary file from the file system. This issue impacts: PAN-OS 8.1 versions earlier than PAN-…
- CVE-2021-31698CRITICALCVSS 9.8EG 9.82021-08-12
Quectel EG25-G devices through 202006130814 allow executing arbitrary code remotely by using an AT command to place shell metacharacters in quectel_handle_fumo_cfg input in atfwd_daemon.
- CVE-2021-31909CRITICALCVSS 9.8EG 9.82021-05-11
In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible.
- CVE-2021-3256MEDIUMCVSS 6.5EG 6.52021-06-11
KuaiFanCMS V5.x contains an arbitrary file read vulnerability in the html_url parameter of the chakanhtml.module.php file.
- CVE-2021-33473CRITICALCVSS 9.1EG 9.12022-06-02
An argument injection vulnerability in Dragonfly Ruby Gem v1.3.0 allows attackers to read and write arbitrary files when the verify_url option is disabled. This vulnerability is exploited via a crafted URL.
- CVE-2021-33564CRITICALCVSS 9.8EG 9.82021-05-29
An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files via a crafted URL when the verify_url option is disabled. This may lead to code execution. The prob…
- CVE-2021-3401CRITICALCVSS 9.8EG 9.82021-02-04
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler f…
- CVE-2021-34718HIGHCVSS 8.1EG 8.12021-09-09
A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, remote attacker to overwrite and read arbitrary files on the local device. This vulnerability is due to insufficient input validation of argum…
- CVE-2021-34816HIGHCVSS 7.2EG 7.22021-07-21
An Argument Injection issue in the plugin management of Etherpad 1.8.13 allows privileged users to execute arbitrary code on the server by installing plugins from an attacker-controlled source.
- CVE-2021-35062HIGHCVSS 8.1EG 8.12021-08-30
A Shell Metacharacter Injection vulnerability in result.php in DRK Odenwaldkreis Testerfassung March-2021 allow an attacker with a valid token of a COVID-19 test result to execute shell commands with the permissions of the web server.
- CVE-2021-3540MEDIUMCVSS 6.5EG 6.52021-07-22
By abusing the 'install rpm info detail' command, an attacker can escape the restricted clish shell on affected versions of Ivanti MobileIron Core. This issue was fixed in version 11.1.0.0.
- CVE-2021-36122HIGHCVSS 8.8EG 8.82021-07-13
An issue was discovered in Echo ShareCare 8.15.5. The UnzipFile feature in Access/EligFeedParse_Sup/UnzipFile_Upd.cfm is susceptible to a command argument injection vulnerability when processing remote input in the zippass parameter from a…
- CVE-2021-37040CRITICALCVSS 9.8EG 9.82021-12-08
There is a Parameter injection vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause privilege escalation of files after CIFS share mounting.
- CVE-2021-38112HIGHCVSS 8.8EG 8.82021-09-22
In the Amazon AWS WorkSpaces client 3.0.10 through 3.1.8 on Windows, argument injection in the workspaces:// URI handler can lead to remote code execution because of the Chromium Embedded Framework (CEF) --gpu-launcher argument. This is fi…
- CVE-2021-41146HIGHCVSS 8.8EG 8.82021-10-21
qutebrowser is an open source keyboard-focused browser with a minimal GUI. Starting with qutebrowser v1.7.0, the Windows installer for qutebrowser registers a `qutebrowserurl:` URL handler. With certain applications, opening a specially cr…
- CVE-2021-41316HIGHCVSS 8.1EG 8.12021-09-17
The Device42 Main Appliance before 17.05.01 does not sanitize user input in its Nmap Discovery utility. An attacker (with permissions to add or edit jobs run by this utility) can inject an extra argument to overwrite arbitrary files as the…
- CVE-2021-42561HIGHCVSS 8.8EG 8.82022-01-12
An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a python "os.system" function. This allows attackers to use shell metacharacters (e.g., backticks "``" or dollar parenthesi…
- CVE-2021-43736CRITICALCVSS 9.8EG 9.82022-03-23
CmsWing CMS 1.3.7 is affected by a Remote Code Execution (RCE) vulnerability via parameter: log rule
- CVE-2021-43809MEDIUMCVSS 6.7EG 6.72021-12-08
`Bundler` is a package for managing application dependencies in Ruby. In `bundler` versions before 2.2.33, when working with untrusted and apparently harmless `Gemfile`'s, it is not expected that they lead to execution of external code, un…
- CVE-2021-46850HIGHCVSS 7.2EG 7.22022-10-24
myVesta Control Panel before 0.9.8-26-43 and Vesta Control Panel before 0.9.8-26 are vulnerable to command injection. An authenticated and remote administrative user can execute arbitrary commands via the v_sftp_license parameter when send…
- CVE-2022-1399CRITICALCVSS 9.1EG 9.12022-08-17
An Argument Injection or Modification vulnerability in the "Change Secret" username field as used in the Discovery component of Device42 CMDB allows a local attacker to run arbitrary code on the appliance with root privileges. This issue a…
- CVE-2022-20930MEDIUMCVSS 6.7EG 6.72022-09-30
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to overwrite and possibly corrupt files on an affected system. This vulnerability is due to insufficient input validation. An attacker could e…
- CVE-2022-21187HIGHCVSS 8.1EG 8.12022-03-14
The package libvcs before 0.11.1 are vulnerable to Command Injection via argument injection. When calling the update_repo function (when using hg), the url parameter is passed to the hg clone command. By injecting some hg options it was po…
- CVE-2022-21223HIGHCVSS 8.1EG 8.12022-04-01
The package cocoapods-downloader before 1.6.2 are vulnerable to Command Injection via hg argument injection. When calling the download function (when using hg), the url (and/or revision, tag, branch) is passed to the hg clone command in a …
- CVE-2022-21235HIGHCVSS 8.1EG 8.12022-04-01
The package github.com/masterminds/vcs before 1.13.3 are vulnerable to Command Injection via argument injection. When hg is executed, argument strings are passed to hg in a way that additional flags can be set. The additional flags can be …
- CVE-2022-23221CRITICALCVSS 9.8EG 9.82022-01-19
H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTINGS=TRUE;FORBID_CREATION=FALSE;INIT=RUNSCRIPT substring, a different vulnerability than CVE-2021-4239…
- CVE-2022-23740HIGHCVSS 8.8EG 8.82022-11-23
CRITICAL: An improper neutralization of argument delimiters in a command vulnerability was identified in GitHub Enterprise Server that enabled remote code execution. To exploit this vulnerability, an attacker would need permission to creat…
- CVE-2022-23915HIGHCVSS 7.2EG 7.22022-03-04
The package weblate from 0 and before 4.11.1 are vulnerable to Remote Code Execution (RCE) via argument injection when using git or mercurial repositories. Authenticated users, can change the behavior of the application in an unintended wa…
- CVE-2022-24066HIGHCVSS 8.1EG 8.12022-04-01
The package simple-git before 3.5.0 are vulnerable to Command Injection due to an incomplete fix of [CVE-2022-24433](https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-2421199) which only patches against the git fetch attack vector. A similar…
- CVE-2022-24376HIGHCVSS 7.2EG 7.22022-06-10
All versions of package git-promise are vulnerable to Command Injection due to an inappropriate fix of a prior [vulnerability](https://security.snyk.io/vuln/SNYK-JS-GITPROMISE-567476) in this package. **Note:** Please note that the vulnera…
Map vulnerabilities like CWE-88 to your infrastructure
EchelonGraph correlates every CVE — across CWE-88 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →