Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2021-04-22 CVE-2021-29465 OS Command Injection vulnerability in Discord Discord-Recon 0.0.1/0.0.2/0.0.3
Discord-Recon is a bot for the Discord chat service.
network
low complexity
discord CWE-78
critical
9.8
2021-04-20 CVE-2020-35314 OS Command Injection vulnerability in Wondercms 3.1.3
A remote code execution vulnerability in the installUpdateThemePluginAction function in index.php in WonderCMS 3.1.3, allows remote attackers to upload a custom plugin which can contain arbitrary code and obtain a webshell via the theme/plugin installer.
network
low complexity
wondercms CWE-78
critical
9.8
2021-04-20 CVE-2021-21526 OS Command Injection vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS 8.1.0 - 9.1.0 contains a privilege escalation in SmartLock compliance mode that may allow compadmin to execute arbitrary commands as root.
local
low complexity
dell CWE-78
6.7
2021-04-18 CVE-2021-23381 OS Command Injection vulnerability in Killing Project Killing
This affects all versions of package killing.
network
low complexity
killing-project CWE-78
critical
9.8
2021-04-18 CVE-2021-23380 OS Command Injection vulnerability in Roar-Pidusage Project Roar-Pidusage
This affects all versions of package roar-pidusage.
network
low complexity
roar-pidusage-project CWE-78
7.3
2021-04-18 CVE-2021-23379 OS Command Injection vulnerability in Portkiller Project Portkiller
This affects all versions of package portkiller.
network
low complexity
portkiller-project CWE-78
critical
9.8
2021-04-18 CVE-2021-23378 OS Command Injection vulnerability in Picotts Project Picotts
This affects all versions of package picotts.
network
low complexity
picotts-project CWE-78
critical
9.8
2021-04-18 CVE-2021-23377 OS Command Injection vulnerability in Onion-Oled-Js Project Onion-Oled-Js
This affects all versions of package onion-oled-js.
network
low complexity
onion-oled-js-project CWE-78
critical
9.8
2021-04-18 CVE-2021-23376 OS Command Injection vulnerability in Ffmpegdotjs Project Ffmpegdotjs
This affects all versions of package ffmpegdotjs.
network
low complexity
ffmpegdotjs-project CWE-78
critical
9.8
2021-04-18 CVE-2021-23375 OS Command Injection vulnerability in Psnode Project Psnode
This affects all versions of package psnode.
network
low complexity
psnode-project CWE-78
critical
9.8