Vulnerabilities > Argument Injection or Modification

DATE CVE VULNERABILITY TITLE RISK
2021-07-13 CVE-2021-36122 Argument Injection or Modification vulnerability in Echobh Sharecare 8.15.5
An issue was discovered in Echo ShareCare 8.15.5.
network
low complexity
echobh CWE-88
8.8
2021-06-11 CVE-2021-3256 Argument Injection or Modification vulnerability in Kuaifan Kuaifancms 5.0
KuaiFanCMS V5.x contains an arbitrary file read vulnerability in the html_url parameter of the chakanhtml.module.php file.
network
low complexity
kuaifan CWE-88
6.5
2021-05-29 CVE-2021-33564 Argument Injection or Modification vulnerability in Dragonfly Project Dragonfly
An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files via a crafted URL when the verify_url option is disabled.
network
low complexity
dragonfly-project CWE-88
critical
9.8
2021-05-11 CVE-2021-31909 Argument Injection or Modification vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible.
network
low complexity
jetbrains CWE-88
critical
9.8
2021-04-20 CVE-2021-29461 Argument Injection or Modification vulnerability in Demon1A Discord-Recon 0.0.2
Discord Recon Server is a bot that allows one to do one's reconnaissance process from one's Discord.
network
low complexity
demon1a CWE-88
8.8
2021-04-19 CVE-2020-7851 Argument Injection or Modification vulnerability in Innorix File Transfer Solution
Innorix Web-Based File Transfer Solution versuibs prior to and including 9.2.18.385 contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the internal method.
local
low complexity
innorix CWE-88
7.8
2021-03-29 CVE-2020-7850 Argument Injection or Modification vulnerability in Douzone Nbbdownloader.Ocx 1.0.0.12
NBBDownloader.ocx ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the activex method.
local
low complexity
douzone CWE-88
7.8
2021-03-24 CVE-2021-1454 Argument Injection or Modification vulnerability in Cisco IOS XE and IOS XE Sd-Wan
Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges.
local
low complexity
cisco CWE-88
6.7
2021-03-24 CVE-2021-1383 Argument Injection or Modification vulnerability in Cisco IOS XE
Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to access the underlying operating system with root privileges.
local
low complexity
cisco CWE-88
6.7
2021-03-10 CVE-2021-24030 Argument Injection or Modification vulnerability in Facebook Gameroom
The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable.
network
low complexity
facebook CWE-88
critical
9.8