Falhas do tipo CWE-78
3.821 resultadosCVE-2022-43325CRITICALAn unauthenticated command injection vulnerability in the product license validation function of Telos Alliance Omnia MPX Node 1.3.* - 1.4.*EPSS 3.2%CVE-2020-5759—Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via SSH. An authenticated remote attacEPSS 3.2%CVE-2026-4499MEDIUMD-Link DIR-820LW SSDP ssdpcgi_main os command injectionEPSS 3.2%CVE-2017-10953—This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.0.14878. User interactiEPSS 3.2%CVE-2023-50381HIGHThree os command injection vulnerabilities exist in the boa formWsc functionality of Realtek rtl819x Jungle SDK v3.4.11. A specially craftedEPSS 3.2%CVE-2025-34187CRITICALIlevia EVE X1/X5 Server 4.7.18.0.eden Reverse RootshellEPSS 3.2%CVE-2025-70329HIGHTOTOLink X5000R v9.1.0cu_2415_B20250515 contains an OS command injection vulnerability in the setIptvCfg handler of the /usr/sbin/lighttpd eEPSS 3.2%CVE-2012-10059CRITICALDolibarr ERP/CRM Post-Auth OS Command InjectionEPSS 3.2%CVE-2020-3332HIGHCisco Small Business RV110W, RV130, RV130W, and RV215W Series Routers Command Shell Injection VulnerabilityEPSS 3.2%CVE-2025-66212CRITICALCoolify Vulnerable to Authenticated Remote Code Execution via Command Injection in Dynamic Proxy Configuration FilenameEPSS 3.2%CVE-2022-30541CRITICALAn OS command injection vulnerability exists in the XCMD setUPnP functionality of Abode Systems, Inc. iota All-In-One Security Kit 6.9X and EPSS 3.2%CVE-2023-38120HIGHAdtran SR400ac ping Command Injection Remote Code Execution VulnerabilityEPSS 3.2%CVE-2025-4032LOWinclusionAI AWorld shell_tool.py subprocess.Popen os command injectionEPSS 3.2%CVE-2019-14889HIGHA flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8. When the libssh SCP client connects tEPSS 3.2%CVE-2020-37123CRITICALPinger 1.0 - Remote Code ExecutionEPSS 3.1%CVE-2025-34125CRITICALD-Link DSP-W110A1 Cookie Command InjectionEPSS 3.1%CVE-2025-56088HIGHOS Command Injection vulnerability in Ruijie RG-BCR RG-BCR860 allowing attackers to execute arbitrary commands via a crafted POST request toEPSS 3.1%CVE-2025-34334HIGHAudioCodes Fax/IVR Appliance <= 2.6.23 Authenticated Command Injection via TestFax.php & LPEEPSS 3.1%CVE-2024-58294HIGHFreePBX 16 Authenticated Remote Code Execution via API ModuleEPSS 3.1%CVE-2022-48107CRITICALD-Link DIR_878_FW1.30B08 was discovered to contain a command injection vulnerability via the component /setnetworksettings/IPAddress. This vEPSS 3.1%