Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-02-12 CVE-2024-22225 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_supportassist utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22227 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_dc utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-22228 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cifssupport utility.
local
low complexity
dell CWE-78
7.8
2024-02-08 CVE-2024-22836 OS Command Injection vulnerability in Akaunting
An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier.
network
low complexity
akaunting CWE-78
critical
9.8
2024-02-08 CVE-2024-24091 OS Command Injection vulnerability in Yealink Meeting Server
Yealink Meeting Server before v26.0.0.66 was discovered to contain an OS command injection vulnerability via the file upload interface.
network
low complexity
yealink CWE-78
critical
9.8
2024-02-06 CVE-2023-36498 OS Command Injection vulnerability in Tp-Link Er7206 Firmware 1.3.0
A post-authentication command injection vulnerability exists in the PPTP client functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591.
network
low complexity
tp-link CWE-78
7.2
2024-02-06 CVE-2023-42664 OS Command Injection vulnerability in Tp-Link Er7206 Firmware 1.3.0
A post authentication command injection vulnerability exists when setting up the PPTP global configuration of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591.
network
low complexity
tp-link CWE-78
7.2
2024-02-06 CVE-2023-43482 OS Command Injection vulnerability in Tp-Link Er7206 Firmware 1.3.0
A command execution vulnerability exists in the guest resource functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591.
network
low complexity
tp-link CWE-78
7.2
2024-02-06 CVE-2023-46683 OS Command Injection vulnerability in Tp-Link Er7206 Firmware 1.3.0
A post authentication command injection vulnerability exists when configuring the wireguard VPN functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591.
network
low complexity
tp-link CWE-78
7.2
2024-02-06 CVE-2023-47167 OS Command Injection vulnerability in Tp-Link Er7206 Firmware 1.3.0
A post authentication command injection vulnerability exists in the GRE policy functionality of Tp-Link ER7206 Omada Gigabit VPN Router 1.3.0 build 20230322 Rel.70591.
network
low complexity
tp-link CWE-78
7.2