Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-10-16 CVE-2020-4636 Command Injection vulnerability in IBM Resilient Security Orchestration Automation and Response 38.2
IBM Resilient OnPrem 38.2 could allow a privileged user to inject malicious commands through Python3 scripting.
network
low complexity
ibm CWE-77
6.5
2020-10-09 CVE-2020-26929 Command Injection vulnerability in Netgear R6220 Firmware and R6230 Firmware
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-10-09 CVE-2020-26922 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
4.6
2020-10-09 CVE-2020-26920 Command Injection vulnerability in Netgear Srk60 Firmware, Srr60 Firmware and Srs60 Firmware
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
5.8
2020-10-09 CVE-2020-26914 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-10-09 CVE-2020-26910 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-10-09 CVE-2020-26909 Command Injection vulnerability in Netgear D7800 Firmware and R7500V2 Firmware
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
8.3
2020-10-09 CVE-2020-26907 Command Injection vulnerability in Netgear Rbk852 Firmware, Rbr850 Firmware and Rbs850 Firmware
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
7.7
2020-10-09 CVE-2020-26902 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
8.3
2020-10-07 CVE-2020-13347 Command Injection vulnerability in Gitlab
A command injection vulnerability was discovered in Gitlab runner versions prior to 13.2.4, 13.3.2 and 13.4.1.
network
low complexity
gitlab CWE-77
critical
9.0