Skip to main content

CWE archive

CWE-77 CVEs

Programmatic archive

3,705 CVEs tagged with CWE-77968 Critical, 1,508 High, 779 Medium, 448 Low, 2 Unrated.

CVE-2023-22750

Published Mar 1, 2023

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Netw…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-22749

Published Mar 1, 2023

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Netw…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-22748

Published Mar 1, 2023

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Netw…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-22747

Published Mar 1, 2023

There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba Netw…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-20075

Published Mar 1, 2023

Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands. These vulnerability is due to improper input…

CVSS 6.0 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-3855

Published Mar 1, 2023

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Liman Central Management System Liman MYS (HTTP/Controllers, CronMail, Jobs mo…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26602

Published Feb 26, 2023

ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create extensions, as demonstrated by snmpset for NET-SNMP-EXTEND-MIB w…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-23917

Published Feb 23, 2023

A prototype pollution vulnerability exists in Rocket.Chat server <5.2.0 that could allow an attacker to a RCE under the admin account. Any user can create their own server in your…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-45600

Published Feb 22, 2023

Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentication in opportunistic circumstances an…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-48338

Published Feb 20, 2023

An issue was discovered in GNU Emacs through 28.2. In ruby-mode.el, the ruby-find-library-file function has a local command injection vulnerability. The ruby-find-library-file fun…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort
Showing 2,501-2,525 of 3,705 CVEsPage 101 of 149