Fallos del tipo CWE-77

2524 resultados
CVE-2024-49042HIGHAzure Database for PostgreSQL Flexible Server Extension Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2024-57226HIGHLinksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_enable function.EPSS 1.2%CVE-2024-57227HIGHLinksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wps fuEPSS 1.2%CVE-2024-57228HIGHLinksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.EPSS 1.2%CVE-2026-1735LOWYealink MeetingBar A30 Diagnostic command injectionEPSS 1.2%CVE-2025-4747MEDIUMBohua NetDragon Firewall ip_status.php command injectionEPSS 1.2%CVE-2024-38896MEDIUMWAVLINK WN551K1 found a command injection vulnerability through the start_hour parameter of /cgi-bin/nightled.cgi.EPSS 1.2%CVE-2026-9378MEDIUMEdimax BR-6675nD POST Request formHwSet command injectionEPSS 1.2%CVE-2021-22867Unsafe configuration options in GitHub Pages leading to path traversal on GitHub Enterprise ServerEPSS 1.2%CVE-2021-32933CRITICALMDT AutoSave Command InjectionEPSS 1.2%CVE-2022-32664HIGHIn Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilegeEPSS 1.2%CVE-2025-62696MEDIUMMultiple critical security issues in SpringboardEPSS 1.2%CVE-2024-23049CRITICALAn issue in symphony v.3.6.3 and before allows a remote attacker to execute arbitrary code via the log4j component.EPSS 1.2%CVE-2026-26015CRITICALUnauthenticated RCE in DocsGPT MCP STDIO ConfigurationEPSS 1.2%CVE-2025-3540HIGHH3C Magic NX15/Magic NX30 Pro/Magic NX400/Magic R3010 HTTP POST Request getCapability FCGI_WizardProtoProcess command injectionEPSS 1.2%CVE-2026-5691MEDIUMTotolink A7100RU cstecgi.cgi setFirewallType os command injectionEPSS 1.2%CVE-2025-3539HIGHH3C Magic BE18000 HTTP POST Request getBasicInfo FCGI_CheckStringIfContainsSemicolon command injectionEPSS 1.2%CVE-2025-3542HIGHH3C Magic NX15/Magic NX400/Magic R3010 HTTP POST Request getsyncpppoecfg FCGI_WizardProtoProcess command injectionEPSS 1.2%CVE-2021-41144HIGHOpenMage LTS authenticated remote code execution through layout updateEPSS 1.2%CVE-2024-0817CRITICALCommand injection in IrGraph.draw in paddlepaddle/paddle 2.6.0EPSS 1.2%