Falhas do tipo CWE-78

3.804 resultados
CVE-2026-4253MEDIUMTenda AC8 Web UploadCfg route_set_user_policy_rule os command injectionEPSS 6.5%CVE-2024-33112HIGHD-Link DIR-845L router v1.01KRb03 and before is vulnerable to Command injection via the hnap_main()func.EPSS 6.5%CVE-2017-14001An Improper Neutralization of Special Elements used in an OS Command issue was discovered in Digium Asterisk GUI 2.1.0 and prior. An OS commEPSS 6.4%CVE-2024-28892CRITICALAn OS command injection vulnerability exists in the name parameter of GoCast 1.1.3. A specially crafted HTTP request can lead to arbitrary cEPSS 6.4%CVE-2026-1324HIGHSangfor Operation and Maintenance Management System SSH Protocol session SessionController os command injectionEPSS 6.4%CVE-2023-6319CRITICALCommand injection in the getAudioMetadata method from the com.webos.service.attachedstoragemanager serviceEPSS 6.4%CVE-2024-4813MEDIUMRuijie RG-UAC interface_commit.php os command injectionEPSS 6.4%CVE-2024-4815MEDIUMRuijie RG-UAC detail.php os command injectionEPSS 6.4%CVE-2026-2188HIGHUTT 进取 521G formPdbUpConfig sub_446B18 os command injectionEPSS 6.4%CVE-2025-63932HIGHD-Link Router DIR-868L A1 FW106KRb01.bin has an unauthenticated remote code execution vulnerability in the cgibin binary. The HNAP service pEPSS 6.4%CVE-2024-4814MEDIUMRuijie RG-UAC static_route_edit_commit.php os command injectionEPSS 6.4%CVE-2024-4816MEDIUMRuijie RG-UAC gre_add_commit.php os command injectionEPSS 6.4%CVE-2025-15501CRITICALSangfor Operation and Maintenance Management System getCmd WriterHandle.getCmd os command injectionEPSS 6.4%CVE-2026-44194CRITICALOPNsense: RCE on user managmentEPSS 6.4%CVE-2025-13087HIGHCommand Injection in Opto22 Groov REST APIEPSS 6.3%CVE-2020-37125CRITICALEdimax Technology EW-7438RPn-v3 Mini 1.27 - Remote Code ExecutionEPSS 6.3%CVE-2024-29224CRITICALAn OS command injection vulnerability exists in the NAT parameter of GoCast 1.1.3. A specially crafted HTTP request can lead to arbitrary coEPSS 6.3%CVE-2026-26213HIGHthingino-firmware api.cgi Unauthenticated Command Injection in Captive PortalEPSS 6.2%CVE-2023-5301MEDIUMDedeCMS album_add.php AddMyAddon os command injectionEPSS 6.2%CVE-2026-25623HIGHArista Edge Threat Management NGFW UI Arbitrary Command ExecutionEPSS 6.2%