Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-05-23 | CVE-2023-31996 | Command Injection vulnerability in Hanwhavision products Hanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Command Injection due to improper sanitization of special characters for the NAS storage test function. | 8.8 |
2023-05-22 | CVE-2023-31742 | Command Injection vulnerability in Linksys Wrt54Gl Firmware 4.30.18.006 There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. | 7.2 |
2023-05-22 | CVE-2023-33294 | Command Injection vulnerability in Kaiostech Kaios 3.0/3.1 An issue was discovered in KaiOS 3.0 before 3.1. | 9.8 |
2023-05-22 | CVE-2023-33235 | Command Injection vulnerability in Moxa Mxsecurity 1.0 MXsecurity version 1.0 is vulnearble to command injection vulnerability. | 8.8 |
2023-05-18 | CVE-2023-31729 | Command Injection vulnerability in Totolink A3300R Firmware 17.0.0Cu.557 TOTOLINK A3300R v17.0.0cu.557 is vulnerable to Command Injection via /cgi-bin/cstecgi.cgi. | 9.8 |
2023-05-17 | CVE-2023-2491 | Command Injection vulnerability in multiple products A flaw was found in the Emacs text editor. | 7.8 |
2023-05-17 | CVE-2023-31700 | Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406 TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd. | 8.8 |
2023-05-17 | CVE-2023-31701 | Command Injection vulnerability in Tp-Link Tl-Wpa4530 KIT Firmware 161115/170406 TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove. | 8.8 |
2023-05-17 | CVE-2023-31208 | Command Injection vulnerability in multiple products Improper neutralization of livestatus command delimiters in the RestAPI in Checkmk < 2.0.0p36, < 2.1.0p28, and < 2.2.0b8 (beta) allows arbitrary livestatus command execution for authorized users. | 8.8 |
2023-05-16 | CVE-2023-31856 | Command Injection vulnerability in Totolink Cp300+ Firmware 5.2Cu.7594B20200910 A command injection vulnerability in the hostTime parameter in the function NTPSyncWithHostof TOTOLINK CP300+ V5.2cu.7594_B20200910 allows attackers to execute arbitrary commands via a crafted http packet. | 9.8 |