Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2019-10-10 CVE-2019-15051 Command Injection vulnerability in Softing products
An issue was discovered in Softing uaGate (SI, MB, 840D) firmware through 1.71.00.1225.
network
low complexity
softing CWE-77
8.8
2019-10-09 CVE-2019-1584 Command Injection vulnerability in Zingbox Inspector
A security vulnerability exists in Zingbox Inspector version 1.293 and earlier, that allows for remote code execution if the Inspector were sent a malicious command from the Zingbox cloud, or if the Zingbox Inspector were tampered with to connect to an attacker's cloud endpoint.
network
low complexity
zingbox CWE-77
critical
9.8
2019-10-02 CVE-2019-12736 Command Injection vulnerability in Jetbrains Ktor
JetBrains Ktor framework before 1.2.0-rc does not sanitize the username provided by the user for the LDAP protocol, leading to command injection.
network
low complexity
jetbrains CWE-77
critical
9.8
2019-09-27 CVE-2019-8073 Command Injection vulnerability in Adobe Coldfusion 2016/2018
ColdFusion 2018- update 4 and earlier and ColdFusion 2016- update 11 and earlier have a Command Injection via Vulnerable component vulnerability.
network
low complexity
adobe CWE-77
critical
9.8
2019-09-18 CVE-2019-13552 Command Injection vulnerability in Advantech Webaccess
In WebAccess versions 8.4.1 and prior, multiple command injection vulnerabilities are caused by a lack of proper validation of user-supplied data and may allow arbitrary file deletion and remote code execution.
network
low complexity
advantech CWE-77
8.8
2019-09-14 CVE-2019-16305 Command Injection vulnerability in Mobatek Mobaxterm 11.1/12.1
In MobaXterm 11.1 and 12.1, the protocol handler is vulnerable to command injection.
network
low complexity
mobatek CWE-77
8.8
2019-09-05 CVE-2019-9254 Command Injection vulnerability in Google Android 10.0
In readArgumentList of zygote.java in Android 10, there is a possible command injection due to improper input validation.
local
low complexity
google CWE-77
7.8
2019-08-26 CVE-2019-7989 Command Injection vulnerability in Adobe Photoshop CC
Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a command injection vulnerability.
network
low complexity
adobe CWE-77
8.8
2019-08-26 CVE-2019-7968 Command Injection vulnerability in Adobe Photoshop CC
Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a command injection vulnerability.
network
low complexity
adobe CWE-77
critical
9.8
2019-08-20 CVE-2019-8060 Command Injection vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have a command injection vulnerability.
network
low complexity
adobe CWE-77
critical
9.8