Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-04-27 CVE-2020-12242 OS Command Injection vulnerability in Valvesoftware Source
Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.
local
low complexity
valvesoftware CWE-78
7.8
2020-04-24 CVE-2020-5868 OS Command Injection vulnerability in F5 Big-Iq Centralized Management
In BIG-IQ 6.0.0-7.0.0, a remote access vulnerability has been discovered that may allow a remote user to execute shell commands on affected systems using HTTP requests to the BIG-IQ user interface.
network
low complexity
f5 CWE-78
critical
9.8
2020-04-23 CVE-2018-21164 OS Command Injection vulnerability in Netgear R6220 Firmware and Wndr3700 Firmware
Certain NETGEAR devices are affected by command injection by an authenticated user.
network
low complexity
netgear CWE-78
7.2
2020-04-23 CVE-2018-21162 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
network
low complexity
netgear CWE-78
critical
9.8
2020-04-23 CVE-2018-21110 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21109 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21108 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21107 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21106 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21105 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8