Fallos del tipo CWE-94

3733 resultados
CVE-2017-18113HIGHThe DefaultOSWorkflowConfigurator class in Jira Server and Jira Data Center before version 8.18.1 allows remote attackers who can trick a syEPSS 1.8%CVE-2024-2195CRITICALRemote Code Execution in aimhubio/aimEPSS 1.8%CVE-2024-25089CRITICALMalwarebytes Binisoft Windows Firewall Control before 6.9.9.2 allows remote attackers to execute arbitrary code via gRPC named pipes.EPSS 1.8%CVE-2022-21686CRITICALServer Side Twig Template Injection in PrestaShopEPSS 1.8%CVE-2023-29861CRITICALAn issue found in FLIR-DVTEL version not specified allows a remote attacker to execute arbitrary code via a crafted request to the managemenEPSS 1.8%CVE-2024-39864CRITICALApache CloudStack: Integration API service uses dynamic port when disabledEPSS 1.8%CVE-2024-21674HIGHThis High severity Remote Code Execution (RCE) vulnerability was introduced in version 7.13.0 of Confluence Data Center and Server. Remote EPSS 1.8%CVE-2024-29937CRITICALNFS in a BSD derived codebase, as used in OpenBSD through 7.4 and FreeBSD through 14.0-RELEASE, allows remote attackers to execute arbitraryEPSS 1.8%CVE-2025-70328HIGHTOTOLINK X6000R v9.4.0cu.1498_B20250826 contains an OS command injection vulnerability in the NTPSyncWithHost handler of the /usr/sbin/shttpEPSS 1.8%CVE-2021-24546EditorsKit < 1.31.6 - Contributor+ Arbitrary PHP Code ExecutionEPSS 1.8%CVE-2024-35314CRITICALA vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.2EPSS 1.7%CVE-2022-45928HIGHA remote OScript execution issue was discovered in OpenText Content Suite Platform 22.1 (16.2.19.1803). Multiple endpoints allow the user toEPSS 1.7%CVE-2022-48175CRITICALRukovoditel v3.2.1 was discovered to contain a remote code execution (RCE) vulnerability in the component /rukovoditel/index.php?module=dashEPSS 1.7%CVE-2006-7105CRITICALPHP remote file inclusion vulnerability in libs/Smarty.class.php in Smarty 2.6.9 allows remote attackers to execute arbitrary PHP code via aEPSS 1.7%CVE-2025-30911CRITICALWordPress RomethemeKit For Elementor plugin <= 1.5.4 - Arbitrary Plugin Installation/Activation to RCE vulnerabilityEPSS 1.7%CVE-2023-34237HIGHRemote code execution via specially crafted script settings in SABnzbdEPSS 1.7%CVE-2021-39160CRITICALCode injection in nbgitpullerEPSS 1.7%CVE-2024-39877HIGHApache Airflow: DAG Author Code Execution possibility in airflow-schedulerEPSS 1.7%CVE-2023-51784CRITICALApache InLong: Remote Code Execution vulnerability in Apache InLong ManagerEPSS 1.7%CVE-2021-24430Speed Booster Pack 4.2.0-beta - Authenticated (admin+) RCEEPSS 1.7%