Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2018-05-09 CVE-2017-14480 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14479 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14478 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::clear_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14477 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for FreeBSD), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14476 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Solaris), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14475 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::Network::add_ip function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1 (for Linux), a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2017-14474 OS Command Injection vulnerability in Mysql-Mmm Mysql Multi-Master Replication Manager 2.2.1
In the MMM::Agent::Helpers::_execute function in MySQL Multi-Master Replication Manager (MMM) mmm_agentd 2.2.1, a specially crafted MMM protocol message can cause a shell command injection resulting in arbitrary command execution with the privileges of the mmm\_agentd process.
network
low complexity
mysql-mmm CWE-78
critical
9.8
2018-05-09 CVE-2018-8866 OS Command Injection vulnerability in Vecna VGO Firmware 3.0.3.52164
In Vecna VGo Robot versions prior to 3.0.3.52164, an attacker on an adjacent network could perform command injection.
low complexity
vecna CWE-78
8.8
2018-05-08 CVE-2018-1239 OS Command Injection vulnerability in Dell products
Dell EMC Unity Operating Environment (OE) versions prior to 4.3.0.1522077968 are affected by multiple OS command injection vulnerabilities.
network
low complexity
dell CWE-78
7.2
2018-05-04 CVE-2018-10562 OS Command Injection vulnerability in Dasannetworks Gpon Router Firmware
An issue was discovered on Dasan GPON home routers.
network
low complexity
dasannetworks CWE-78
critical
9.8