Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-06-12 CVE-2023-26295 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
critical
9.8
2023-06-12 CVE-2023-26296 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26297 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26298 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-33625 Command Injection vulnerability in Dlink Dir-600 Firmware 2.18
D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a command injection vulnerability via the ST parameter in the lxmldbc_system() function.
network
low complexity
dlink CWE-77
critical
9.8
2023-06-12 CVE-2023-34105 Command Injection vulnerability in Ossrs Simple Realtime Server
SRS is a real-time video server supporting RTMP, WebRTC, HLS, HTTP-FLV, SRT, MPEG-DASH, and GB28181.
network
high complexity
ossrs CWE-77
7.5
2023-06-12 CVE-2023-3206 Command Injection vulnerability in Feiyuxing Vec40G Firmware 3.0
A vulnerability classified as problematic was found in Chengdu VEC40G 3.0.
network
low complexity
feiyuxing CWE-77
7.5
2023-06-12 CVE-2022-38156 Command Injection vulnerability in Kratosdefense Spectralnet Narrowband Firmware
A remote command injection issues exists in the web server of the Kratos SpectralNet device with SpectralNet Narrowband (NB) before 1.7.5.
network
low complexity
kratosdefense CWE-77
7.2
2023-06-12 CVE-2023-35031 Command Injection vulnerability in Atos products
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8, Assistant V10 R0, Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8, and Manager V10 R0 allow command injection by authenticated users, aka OSFOURK-24036.
network
low complexity
atos CWE-77
8.8
2023-06-12 CVE-2023-35032 Command Injection vulnerability in Atos products
Atos Unify OpenScape 4000 Assistant V10 R1 before V10 R1.42.0 and V10 R1.34.8 and Manager V10 R1 before V10 R1.42.0 and V10 R1.34.8 allow command injection by authenticated users, aka OSFOURK-23554.
network
low complexity
atos CWE-77
8.8