Fallos del tipo CWE-78

3818 resultados
CVE-2022-42490CRITICALSeveral OS command injection vulnerabilities exist in the m2m binary of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted netwEPSS 3.5%CVE-2025-34029CRITICALEdimax EW-7438RPn Mini OS Command Injection via syscmd.aspEPSS 3.5%CVE-2023-47209HIGHA post authentication command injection vulnerability exists in the ipsec policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.EPSS 3.4%CVE-2023-36498HIGHA post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3EPSS 3.4%CVE-2023-46683HIGHA post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada GigabEPSS 3.4%CVE-2023-47617HIGHA post authentication command injection vulnerability exists when configuring the web group member of Tp-Link ER7206 Omada Gigabit VPN RouteEPSS 3.4%CVE-2023-42664HIGHA post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VEPSS 3.4%CVE-2023-47167HIGHA post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.EPSS 3.4%CVE-2021-36022CRITICALMagento Commerce Widgets Update Layout XML Injection Vulnerability Could Lead To Remote Code ExecutionEPSS 3.4%CVE-2018-0099A vulnerability in the web management GUI of the Cisco D9800 Network Transport Receiver could allow an authenticated, remote attacker to perEPSS 3.4%CVE-2026-31975HIGHCloud CLI WebSocket shell injectionEPSS 3.4%CVE-2025-6897MEDIUMD-Link DI-7300G+ httpd_debug.asp os command injectionEPSS 3.4%CVE-2026-3102MEDIUMexiftool PNG File MacOS.pm SetMacOSTags os command injectionEPSS 3.4%CVE-2021-41280CRITICALOS command injection in Sharetribe GoEPSS 3.4%CVE-2023-25582HIGHTwo OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted networEPSS 3.4%CVE-2023-25583HIGHTwo OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted networEPSS 3.4%CVE-2026-41925CRITICALWDR201A WiFi Extender OS Command Injection via adm.cgi (reboot_time)EPSS 3.4%CVE-2022-34850CRITICALAn OS command injection vulnerability exists in the web_server /action/import_authorized_keys/ functionality of Robustel R1510 3.1.16 and 3.EPSS 3.4%CVE-2024-7066MEDIUMF-logic DataCube3 HTTP POST Request config_time_sync.php os command injectionEPSS 3.4%CVE-2022-33150CRITICALAn OS command injection vulnerability exists in the js_package install functionality of Robustel R1510 3.1.16. A specially-crafted network rEPSS 3.4%