Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-06-03 CVE-2020-5299 Command Injection vulnerability in Octobercms October
In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, any users with the ability to modify any data that could eventually be exported as a CSV file from the `ImportExportController` could potentially introduce a CSV injection into the data to cause the generated CSV export file to be malicious.
network
high complexity
octobercms CWE-77
4.6
2020-05-28 CVE-2020-11079 Command Injection vulnerability in Node-Dns-Sync Project Node-Dns-Sync 0.1.3
node-dns-sync (npm module dns-sync) through 0.2.0 allows execution of arbitrary commands .
network
low complexity
node-dns-sync-project CWE-77
7.5
2020-04-23 CVE-2019-17101 Command Injection vulnerability in Netatmo Smart Indoor Camera Firmware
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in firmware versions prior to x.xx of Netatmo Smart Indoor Camera allows an attacker to execute commands on the device.
local
low complexity
netatmo CWE-77
4.6
2020-04-16 CVE-2019-20732 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
4.6
2020-04-16 CVE-2019-20727 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-04-16 CVE-2019-20726 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-04-16 CVE-2019-20724 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-04-16 CVE-2019-20722 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-04-16 CVE-2019-20718 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
5.2
2020-04-15 CVE-2019-20659 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
network
low complexity
netgear CWE-77
6.5