Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-04-27 CVE-2018-21157 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-27 CVE-2018-21154 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-27 CVE-2018-21152 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-27 CVE-2018-21100 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
8.0
2020-04-27 CVE-2018-21099 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
8.0
2020-04-27 CVE-2018-21098 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-27 CVE-2020-11941 OS Command Injection vulnerability in Opmantek Open-Audit 3.2.2
An issue was discovered in Open-AudIT 3.2.2.
network
low complexity
opmantek CWE-78
8.8
2020-04-27 CVE-2020-12242 OS Command Injection vulnerability in Valvesoftware Source
Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.
local
low complexity
valvesoftware CWE-78
7.8
2020-04-24 CVE-2020-5868 OS Command Injection vulnerability in F5 Big-Iq Centralized Management
In BIG-IQ 6.0.0-7.0.0, a remote access vulnerability has been discovered that may allow a remote user to execute shell commands on affected systems using HTTP requests to the BIG-IQ user interface.
network
low complexity
f5 CWE-78
critical
9.8
2020-04-23 CVE-2018-21164 OS Command Injection vulnerability in Netgear R6220 Firmware and Wndr3700 Firmware
Certain NETGEAR devices are affected by command injection by an authenticated user.
network
low complexity
netgear CWE-78
7.2