Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2018-06-05 CVE-2017-7637 OS Command Injection vulnerability in Qnap NAS Proxy Server
QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to run arbitrary OS commands against the system with root privileges.
network
low complexity
qnap CWE-78
critical
9.8
2018-06-05 CVE-2018-6662 OS Command Injection vulnerability in Mcafee Management of Native Encryption
Privilege Escalation vulnerability in McAfee Management of Native Encryption (MNE) before 4.1.4 allows local users to gain elevated privileges via a crafted user input.
local
low complexity
mcafee CWE-78
7.8
2018-06-04 CVE-2017-16042 OS Command Injection vulnerability in Growl Project Growl
Growl adds growl notification support to nodejs.
network
low complexity
growl-project CWE-78
critical
9.8
2018-06-02 CVE-2018-11189 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows privilege escalation (issue 1 of 6).
network
low complexity
quest CWE-78
8.8
2018-06-02 CVE-2018-11188 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 46 of 46).
network
low complexity
quest CWE-78
8.8
2018-06-02 CVE-2018-11187 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 45 of 46).
network
low complexity
quest CWE-78
8.8
2018-06-02 CVE-2018-11186 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 44 of 46).
network
low complexity
quest CWE-78
8.8
2018-06-02 CVE-2018-11185 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 43 of 46).
network
low complexity
quest CWE-78
8.8
2018-06-02 CVE-2018-11184 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 42 of 46).
network
low complexity
quest CWE-78
7.2
2018-06-02 CVE-2018-11183 OS Command Injection vulnerability in Quest Disk Backup
Quest DR Series Disk Backup software version before 4.0.3.1 allows command injection (issue 41 of 46).
network
low complexity
quest CWE-78
8.8