Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2020-02-28 CVE-2019-10803 OS Command Injection vulnerability in Push-Dir Project Push-Dir
push-dir through 0.4.1 allows execution of arbritary commands.
network
low complexity
push-dir-project CWE-78
critical
9.8
2020-02-28 CVE-2019-10802 OS Command Injection vulnerability in Mangoraft Giting
giting version prior to 0.0.8 allows execution of arbritary commands.
network
low complexity
mangoraft CWE-78
critical
9.8
2020-02-28 CVE-2019-10801 OS Command Injection vulnerability in Enpeem Project Enpeem
enpeem through 2.2.0 allows execution of arbitrary commands.
network
low complexity
enpeem-project CWE-78
critical
9.8
2020-02-28 CVE-2019-15609 OS Command Injection vulnerability in Kill-Port-Process Project Kill-Port-Process
The kill-port-process package version < 2.2.0 is vulnerable to a Command Injection vulnerability.
network
low complexity
kill-port-process-project CWE-78
critical
9.8
2020-02-28 CVE-2020-9463 OS Command Injection vulnerability in Centreon 19.10
Centreon 19.10 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the server_ip field in JSON data in an api/internal.php?object=centreon_configuration_remote request.
network
low complexity
centreon CWE-78
8.8
2020-02-26 CVE-2020-3173 OS Command Injection vulnerability in Cisco UCS Manager
A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) on an affected device.
local
low complexity
cisco CWE-78
7.8
2020-02-26 CVE-2020-3171 OS Command Injection vulnerability in Cisco Fxos and UCS Manager
A vulnerability in the local management (local-mgmt) CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) of an affected device.
local
low complexity
cisco CWE-78
7.8
2020-02-26 CVE-2020-3169 OS Command Injection vulnerability in Cisco Firepower Extensible Operating System
A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying Linux operating system with a privilege level of root on an affected device.
local
low complexity
cisco CWE-78
6.7
2020-02-26 CVE-2020-3167 OS Command Injection vulnerability in Cisco products
A vulnerability in the CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS).
local
low complexity
cisco CWE-78
7.8
2020-02-26 CVE-2019-19994 OS Command Injection vulnerability in Seling Visual Access Manager 4.15.0/4.29.0
An issue was discovered in Selesta Visual Access Manager (VAM) 4.15.0 through 4.29.
network
low complexity
seling CWE-78
critical
9.8