Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-01-04 CVE-2021-43711 Command Injection vulnerability in Totolink Ex200 Firmware 4.0.3C.7646B20201211
The downloadFlile.cgi binary file in TOTOLINK EX200 V4.0.3c.7646_B20201211 has a command injection vulnerability when receiving GET parameters.
network
low complexity
totolink CWE-77
critical
9.8
2021-12-30 CVE-2021-20167 Command Injection vulnerability in Netgear Rax43 Firmware 1.0.3.96
Netgear RAX43 version 1.0.3.96 contains a command injection vulnerability.
low complexity
netgear CWE-77
8.0
2021-12-29 CVE-2021-23727 Command Injection vulnerability in multiple products
This affects the package celery before 5.2.2.
network
high complexity
celeryproject fedoraproject CWE-77
7.5
2021-12-26 CVE-2021-45513 Command Injection vulnerability in Netgear Xr1000 Firmware 1.0.0.44/1.0.0.50/1.0.0.52
NETGEAR XR1000 devices before 1.0.0.58 are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
critical
9.6
2021-12-26 CVE-2021-45514 Command Injection vulnerability in Netgear Xr1000 Firmware 1.0.0.44/1.0.0.50/1.0.0.52
NETGEAR XR1000 devices before 1.0.0.58 are affected by command injection by an unauthenticated attacker.
low complexity
netgear CWE-77
8.8
2021-12-26 CVE-2021-45531 Command Injection vulnerability in Netgear D6220 Firmware
NETGEAR D6220 devices before 1.0.0.76 are affected by command injection by an authenticated user.
network
low complexity
netgear CWE-77
8.8
2021-12-26 CVE-2021-45532 Command Injection vulnerability in Netgear R8000 Firmware
NETGEAR R8000 devices before 1.0.4.76 are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
7.8
2021-12-26 CVE-2021-45533 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
6.8
2021-12-26 CVE-2021-45534 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
local
low complexity
netgear CWE-77
7.8
2021-12-26 CVE-2021-45535 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
6.8