Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-07-29 CVE-2024-7181 Command Injection vulnerability in Totolink A3600R Firmware 4.1.2Cu.5182B20201102
A vulnerability classified as critical was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102.
network
low complexity
totolink CWE-77
8.8
2024-07-29 CVE-2024-7177 Command Injection vulnerability in Totolink A3600R Firmware 4.1.2Cu.5182B20201102
A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102.
network
low complexity
totolink CWE-77
8.8
2024-07-29 CVE-2024-7174 Command Injection vulnerability in Totolink A3600R Firmware 4.1.2Cu.5182B20201102
A vulnerability, which was classified as critical, was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102.
network
low complexity
totolink CWE-77
8.8
2024-07-28 CVE-2024-7160 Command Injection vulnerability in Totolink A3700R Firmware 9.1.2U.5822B20200513
A vulnerability classified as critical has been found in TOTOLINK A3700R 9.1.2u.5822_B20200513.
network
low complexity
totolink CWE-77
8.8
2024-07-28 CVE-2024-7158 Command Injection vulnerability in Totolink A3100R Firmware 4.1.2Cu.5050B20200504
A vulnerability was found in TOTOLINK A3100R 4.1.2cu.5050_B20200504.
network
low complexity
totolink CWE-77
8.8
2024-07-25 CVE-2024-38288 Command Injection vulnerability in Rhubcom Turbomeeting
A command-injection issue in the Certificate Signing Request (CSR) functionality in R-HUB TurboMeeting through 8.x allows authenticated attackers with administrator privileges to execute arbitrary commands on the underlying server as root.
network
low complexity
rhubcom CWE-77
7.2
2024-07-23 CVE-2024-41319 Command Injection vulnerability in Totolink A6000R Firmware 1.0.1B20201211.2000
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the cmd parameter in the webcmd function.
network
low complexity
totolink CWE-77
critical
9.8
2024-07-17 CVE-2023-52291 Command Injection vulnerability in Apache Streampark
In streampark, the project module integrates Maven's compilation capabilities.
network
low complexity
apache CWE-77
4.7
2024-07-17 CVE-2024-29737 Command Injection vulnerability in Apache Streampark
In streampark, the project module integrates Maven's compilation capabilities.
network
low complexity
apache CWE-77
4.7
2024-07-09 CVE-2024-39568 Command Injection vulnerability in Siemens Sinema Remote Connect Client
A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 HF1).
local
low complexity
siemens CWE-77
7.8