Falhas do tipo CWE-94

3.736 resultados
CVE-2022-24512MEDIUM.NET and Visual Studio Remote Code Execution VulnerabilityEPSS 1.6%CVE-2023-6395MEDIUMMock: privilege escalation for users that can access mock configurationEPSS 1.6%CVE-2025-67887CRITICAL1C-Bitrix through 25.100.500 allows Remote Code Execution because an actor with SOURCE/WRITE permissions for the Translate Module can uploadEPSS 1.5%CVE-2025-27657CRITICALVasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Remote Code Execution V-2023-008.EPSS 1.5%CVE-2025-42957CRITICALCode Injection vulnerability in SAP S/4HANA (Private Cloud or On-Premise)EPSS 1.5%CVE-2023-37914CRITICALPrivilege escalation (PR)/RCE from account through Invitation subject/messageEPSS 1.5%CVE-2023-25657HIGHRemote code execution in Jinja2 template rendering in NautobotEPSS 1.5%CVE-2022-43541HIGHVulnerabilities in the Aruba EdgeConnect Enterprise command line interface allow remote authenticated users to run arbitrary commands on theEPSS 1.5%CVE-2023-45590CRITICALAn improper control of generation of code ('code injection') in Fortinet FortiClientLinux version 7.2.0, 7.0.6 through 7.0.10 and 7.0.3 throEPSS 1.5%CVE-2025-63706CRITICALNPM package next-npm-version1.0.1 is vulnerable to Command injection.EPSS 1.5%CVE-2023-24059HIGHGrand Theft Auto V for PC allows attackers to achieve partial remote code execution or modify files on a PC, as exploited in the wild in JanEPSS 1.5%CVE-2021-24537Similar Posts <= 3.1.5 - Admin+ Arbitrary PHP Code ExecutionEPSS 1.5%CVE-2023-46980CRITICALAn issue in Best Courier Management System v.1.0 allows a remote attacker to execute arbitrary code and escalate privileges via a crafted scEPSS 1.5%CVE-2025-61937CRITICALAVEVA Process Optimization Code InjectionEPSS 1.5%CVE-2024-31004HIGHAn issue in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the Ap4StsdAtom.cpp,AP4_StsdAtom::AP4_StsdAtom,mEPSS 1.5%CVE-2024-21673HIGHThis High severity Remote Code Execution (RCE) vulnerability was introduced in versions 7.13.0 of Confluence Data Center and Server. RemoteEPSS 1.5%CVE-2023-26817HIGHcodefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component /controllerEPSS 1.5%CVE-2018-0461MEDIUMCisco IP Phone 8800 Series Arbitrary Script Injection VulnerabilityEPSS 1.5%CVE-2021-36800HIGHAkaunting OS Command Injection in 'Money.php'EPSS 1.5%CVE-2020-7480A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists in Andover Continuum (All versions), which could caEPSS 1.5%