Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-12-18 CVE-2023-51385 OS Command Injection vulnerability in multiple products
In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations.
network
low complexity
openbsd debian CWE-78
6.5
2023-12-15 CVE-2023-48380 OS Command Injection vulnerability in Softnext Mail SQR Expert 230330/2Dut.190301/2Dut.220701
Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function.
low complexity
softnext CWE-78
8.0
2023-12-14 CVE-2023-44279 OS Command Injection vulnerability in Dell products
Dell PowerProtect DD , versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI.
local
low complexity
dell CWE-78
6.7
2023-12-14 CVE-2023-48662 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48663 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48664 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48665 OS Command Injection vulnerability in Dell products
Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48667 OS Command Injection vulnerability in Dell products
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in administrator CLI.
network
low complexity
dell CWE-78
7.2
2023-12-14 CVE-2023-48668 OS Command Injection vulnerability in Dell Powerprotect Data Domain Management Center
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 on DDMC contain an OS command injection vulnerability in an admin operation.
local
low complexity
dell CWE-78
6.7
2023-12-14 CVE-2023-44277 OS Command Injection vulnerability in Dell products
Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in the CLI.
local
low complexity
dell CWE-78
7.8