Falhas do tipo CWE-77

2.517 resultados
CVE-2025-13798MEDIUMADSLR NBR1005GPEV2 send_order.cgi ap_macfilter_add command injectionEPSS 6.3%CVE-2025-10364CRITICALUnauthenticated Arbitrary Command Injection in Evertz SDVNEPSS 6.3%CVE-2024-7907MEDIUMTOTOLINK X6000R cstecgi.cgi setSyslogCfg command injectionEPSS 6.2%CVE-2025-60687MEDIUMAn unauthenticated command injection vulnerability exists in the ToToLink LR1200GB Router firmware V9.1.0u.6619_B20230130 within the cstecgiEPSS 6.2%CVE-2018-0427A vulnerability in the CronJob scheduler API of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attackeEPSS 6.1%CVE-2018-3779active-support ruby gem 5.2.0 could allow a remote attacker to execute arbitrary code on the system, caused by containing a malicious backdoEPSS 6.1%CVE-2026-1192MEDIUMTosei Online Store Management System ネット店舗管理システム imode_alldata.php command injectionEPSS 6.1%CVE-2014-9188Schneider Electric ProClima Command InjectionEPSS 6.1%CVE-2025-10814MEDIUMD-Link DIR-823X goahead command injectionEPSS 6.1%CVE-2025-10358MEDIUMWavlink WL-WN578W2 wireless.cgi sub_404850 os command injectionEPSS 6.1%CVE-2025-10359MEDIUMWavlink WL-WN578W2 wireless.cgi sub_404DBC os command injectionEPSS 6.1%CVE-2026-6992HIGHLinksys MR9600 JNAP Action run_central2.sh BTRequestGetSmartConnectStatus os command injectionEPSS 6.1%CVE-2025-34267HIGHFlowise Authenticated Command Execution and Sandbox Bypass via Puppeteer & Playwright PackagesEPSS 6.0%CVE-2026-2529MEDIUMWavlink WL-WN579A3 wireless.cgi DeleteMac command injectionEPSS 6.0%CVE-2026-2527MEDIUMWavlink WL-WN579A3 login.cgi command injectionEPSS 6.0%CVE-2025-6485MEDIUMTOTOLINK A3002R formWlSiteSurvey os command injectionEPSS 6.0%CVE-2026-20186CRITICALCisco Identity Services Engine Multiple Authenticated Remote Code Execution VulnerabilityEPSS 5.9%CVE-2024-29269HIGHAn issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.EPSS 5.9%CVE-2025-3816MEDIUMwestboy CicadasCMS Scheduled Task save os command injectionEPSS 5.9%CVE-2024-39762CRITICALMultiple OS command injection vulnerabilities exist in the internet.cgi set_add_routing() functionality of Wavlink AC3000 M33A8.V5030.210505EPSS 5.9%