Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-08-24 CVE-2024-8131 OS Command Injection vulnerability in Dlink products
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814 and classified as critical.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8132 OS Command Injection vulnerability in Dlink products
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8130 OS Command Injection vulnerability in Dlink products
A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814 and classified as critical.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8129 OS Command Injection vulnerability in Dlink products
A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8128 OS Command Injection vulnerability in Dlink products
A vulnerability, which was classified as critical, has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-24 CVE-2024-8127 OS Command Injection vulnerability in Dlink products
A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240814.
network
low complexity
dlink CWE-78
critical
9.8
2024-08-22 CVE-2024-8075 OS Command Injection vulnerability in Totolink T8 Firmware 4.1.5Cu.862B20230228
A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical.
network
low complexity
totolink CWE-78
critical
9.8
2024-08-22 CVE-2024-8077 OS Command Injection vulnerability in Totolink T8 Firmware 4.1.5Cu.862B20230228
A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228.
network
low complexity
totolink CWE-78
critical
9.8
2024-08-21 CVE-2024-7448 OS Command Injection vulnerability in Magnetforensics Axiom 8.0.0.39753
Magnet Forensics AXIOM Command Injection Remote Code Execution Vulnerability.
low complexity
magnetforensics CWE-78
8.0
2024-08-21 CVE-2020-11847 OS Command Injection vulnerability in Microfocus Netiq Privileged Access Manager 3.7
SSH authenticated user when access the PAM server can execute an OS command to gain the full system access using bash.
local
low complexity
microfocus CWE-78
7.8