Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-02-27 | CVE-2020-28243 | Command Injection vulnerability in multiple products An issue was discovered in SaltStack Salt before 3002.5. | 7.8 |
2021-02-17 | CVE-2020-7848 | Command Injection vulnerability in Iptime C200 Firmware 1.0.12 The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. | 8.0 |
2021-02-10 | CVE-2021-27185 | Command Injection vulnerability in Samba-Client Project Samba-Client The samba-client package before 4.0.0 for Node.js allows command injection because of the use of process.exec. | 9.8 |
2021-02-09 | CVE-2020-13117 | Command Injection vulnerability in Wavlink Wn575A4 Firmware and Wn579X3 Firmware Wavlink WN575A4 and WN579X3 devices through 2020-05-15 allow unauthenticated remote users to inject commands via the key parameter in a login request. | 9.8 |
2021-02-08 | CVE-2021-26576 | Command Injection vulnerability in HPE Baseboard Management Controller The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a command injection vulnerability in libifc.so uploadsshkey function. | 7.8 |
2021-02-08 | CVE-2021-25172 | Command Injection vulnerability in HPE Baseboard Management Controller The Baseboard Management Controller (BMC) firmware in HPE Apollo 70 System prior to version 3.0.14.0 has a command injection vulnerability in libifc.so websetdefaultlangcfg function. | 7.8 |
2021-02-03 | CVE-2021-0364 | Command Injection vulnerability in Google Android 10.0/11.0 In mobile_log_d, there is a possible command injection due to improper input validation. | 6.7 |
2021-02-03 | CVE-2021-0363 | Command Injection vulnerability in Google Android 10.0/11.0 In mobile_log_d, there is a possible command injection due to a missing bounds check. | 6.7 |
2021-02-03 | CVE-2021-0358 | Command Injection vulnerability in Google Android 10.0/11.0 In netdiag, there is a possible command injection due to improper input validation. | 6.7 |
2021-02-03 | CVE-2021-0356 | Command Injection vulnerability in Google Android 10.0/11.0 In netdiag, there is a possible command injection due to improper input validation. | 6.7 |