Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-04-02 CVE-2020-7625 OS Command Injection vulnerability in Op-Browser Project Op-Browser
op-browser through 1.0.6 is vulnerable to Command Injection.
network
low complexity
op-browser-project CWE-78
critical
9.8
2020-04-02 CVE-2020-7624 OS Command Injection vulnerability in Effect Project Effect
effect through 1.0.4 is vulnerable to Command Injection.
network
low complexity
effect-project CWE-78
critical
9.8
2020-04-02 CVE-2020-7623 OS Command Injection vulnerability in Jscover Project Jscover
jscover through 1.0.0 is vulnerable to Command Injection.
network
low complexity
jscover-project CWE-78
critical
9.8
2020-04-02 CVE-2020-7621 OS Command Injection vulnerability in IBM Strongloop Nginx Controller 1.0.0/1.0.1/1.0.2
strong-nginx-controller through 1.0.2 is vulnerable to Command Injection.
network
low complexity
ibm CWE-78
critical
9.8
2020-04-02 CVE-2020-7620 OS Command Injection vulnerability in Netease Pomelo-Monitor 0.3.5/0.3.6/0.3.7
pomelo-monitor through 0.3.7 is vulnerable to Command Injection.It allows injection of arbitrary commands as part of 'pomelo-monitor' params.
network
low complexity
netease CWE-78
critical
9.8
2020-04-02 CVE-2020-7619 OS Command Injection vulnerability in Get-Git-Data Project Get-Git-Data
get-git-data through 1.3.1 is vulnerable to Command Injection.
network
low complexity
get-git-data-project CWE-78
critical
9.8
2020-04-02 CVE-2020-11490 OS Command Injection vulnerability in Zevenet ZEN Load Balancer 3.10.1
Manage::Certificates in Zen Load Balancer 3.10.1 allows remote authenticated admins to execute arbitrary OS commands via shell metacharacters in the index.cgi cert_issuer, cert_division, cert_organization, cert_locality, cert_state, cert_country, or cert_email parameter.
network
low complexity
zevenet CWE-78
7.2
2020-03-31 CVE-2020-4242 OS Command Injection vulnerability in IBM Spectrum Protect Plus and Spectrum Scale
IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote authenticated attacker to execute arbitrary commands on the system.
network
low complexity
ibm CWE-78
8.8
2020-03-31 CVE-2020-4241 OS Command Injection vulnerability in IBM Spectrum Protect Plus and Spectrum Scale
IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote authenticated attacker to execute arbitrary commands on the system.
network
low complexity
ibm CWE-78
8.8
2020-03-31 CVE-2020-4206 OS Command Injection vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to execute arbitrary commands on the system in the context of root user, caused by improper validation of user-supplied input.
network
low complexity
ibm CWE-78
8.8