Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2020-17503 Command Injection vulnerability in Barco Transform N
The NDN-210 has a web administration panel which is made available over https.
network
low complexity
barco CWE-77
7.2
2021-01-08 CVE-2020-17502 Command Injection vulnerability in Barco Transform N
Barco TransForm N before 3.8 allows Command Injection (issue 2 of 4).
network
low complexity
barco CWE-77
7.2
2021-01-07 CVE-2020-17500 Command Injection vulnerability in Barco Transform N
Barco TransForm NDN-210 Lite, NDN-210 Pro, NDN-211 Lite, and NDN-211 Pro before 3.8 allows Command Injection (issue 1 of 4).
network
low complexity
barco CWE-77
critical
9.8
2021-01-07 CVE-2018-19418 Command Injection vulnerability in Foxitsoftware PDF Activex 5.5.0
Foxit PDF ActiveX before 5.5.1 allows remote code execution via command injection because of the lack of a security permission control.
local
low complexity
foxitsoftware CWE-77
7.8
2020-12-31 CVE-2018-14067 Command Injection vulnerability in Greenpacket Dv-360 Firmware 2.10.14G1.0.6.1
Green Packet WiMax DV-360 2.10.14-g1.0.6.1 devices allow Command Injection, with unauthenticated remote command execution, via a crafted payload to the HTTPS port, because lighttpd listens on all network interfaces (including the external Internet) by default.
network
low complexity
greenpacket CWE-77
critical
9.8
2020-12-30 CVE-2020-35798 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
local
low complexity
netgear CWE-77
7.8
2020-12-30 CVE-2020-35794 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
6.8
2020-12-30 CVE-2020-35793 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
6.7
2020-12-30 CVE-2020-35792 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
6.8
2020-12-30 CVE-2020-35791 Command Injection vulnerability in Netgear R7800 Firmware, R8900 Firmware and R9000 Firmware
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
6.7