Vulnerabilities > Argument Injection or Modification

DATE CVE VULNERABILITY TITLE RISK
2024-04-15 CVE-2024-3775 aEnrich Technology a+HRD's functionality for downloading files using youtube-dl.exe does not properly restrict user input.
network
low complexity
CWE-88
5.3
2024-01-21 CVE-2024-23731 Argument Injection or Modification vulnerability in Embedchain
The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code, related to the openapi.py yaml.load function argument.
network
low complexity
embedchain CWE-88
critical
9.8
2024-01-17 CVE-2023-20260 Argument Injection or Modification vulnerability in Cisco Prime Infrastructure
A vulnerability in the application CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager could allow an authenticated, local attacker to gain escalated privileges.
local
low complexity
cisco CWE-88
6.7
2023-12-29 CVE-2023-47804 Argument Injection or Modification vulnerability in Apache Openoffice
Apache OpenOffice documents can contain links that call internal macros with arbitrary arguments.
network
low complexity
apache CWE-88
8.8
2023-12-26 CVE-2023-46681 Argument Injection or Modification vulnerability in Buffalo Vr-S1000 Firmware
Improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability in VR-S1000 firmware Ver.
local
low complexity
buffalo CWE-88
7.8
2023-12-06 CVE-2023-49096 Argument Injection or Modification vulnerability in Jellyfin
Jellyfin is a Free Software Media System for managing and streaming media.
network
low complexity
jellyfin CWE-88
8.8
2023-12-05 CVE-2023-6269 Argument Injection or Modification vulnerability in Atos products
An argument injection vulnerability has been identified in the administrative web interface of the Atos Unify OpenScape products "Session Border Controller" (SBC) and "Branch", before version V10 R3.4.0, and OpenScape "BCF" before versions V10R10.12.00 and V10R11.05.02.
network
low complexity
atos CWE-88
critical
9.8
2023-09-25 CVE-2023-0633 Argument Injection or Modification vulnerability in Docker Desktop
In Docker Desktop on Windows before 4.12.0 an argument injection to installer may result in local privilege escalation (LPE).This issue affects Docker Desktop: before 4.12.0.
local
low complexity
docker CWE-88
7.8
2023-09-19 CVE-2023-26143 Argument Injection or Modification vulnerability in Blamer Project Blamer
Versions of the package blamer before 1.0.4 are vulnerable to Arbitrary Argument Injection via the blameByFile() API.
network
low complexity
blamer-project CWE-88
critical
9.1
2023-08-25 CVE-2023-39287 Argument Injection or Modification vulnerability in Mitel Mivoice Connect
A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an authenticated attacker with elevated privileges and internal network access to conduct a command argument injection due to insufficient parameter sanitization.
network
low complexity
mitel CWE-88
5.5