Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2024-02-17 CVE-2024-25468 OS Command Injection vulnerability in Totolink X5000R Firmware 9.1.0U.6369B20230113
An issue in TOTOLINK X5000R V.9.1.0u.6369_B20230113 allows a remote attacker to cause a denial of service via the host_time parameter of the NTPSyncWithHost component.
network
low complexity
totolink CWE-78
7.5
2024-02-16 CVE-2024-22426 OS Command Injection vulnerability in Dell Recoverpoint for Virtual Machines 5.3/6.0
Dell RecoverPoint for Virtual Machines 5.3.x, 6.0.SP1 contains an OS Command injection vulnerability.
network
low complexity
dell CWE-78
critical
9.8
2024-02-15 CVE-2023-32462 OS Command Injection vulnerability in Dell Smartfabric Os10
Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication.
network
low complexity
dell CWE-78
critical
9.8
2024-02-14 CVE-2024-1367 OS Command Injection vulnerability in Tenable Security Center 6.3.0
A command injection vulnerability exists where an authenticated, remote attacker with administrator privileges on the Security Center application could modify Logging parameters, which could lead to the execution of arbitrary code on the Security Center host.
network
low complexity
tenable CWE-78
7.2
2024-02-14 CVE-2024-21782 OS Command Injection vulnerability in F5 products
BIG-IP or BIG-IQ Resource Administrators and Certificate Managers who have access to the secure copy (scp) utility but do not have access to Advanced shell (bash) can execute arbitrary commands with a specially crafted command string.
local
low complexity
f5 CWE-78
6.7
2024-02-12 CVE-2024-0164 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contain an OS Command Injection Vulnerability in its svc_topstats utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-0165 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_acldb_dump utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-0166 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-0167 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility.
local
low complexity
dell CWE-78
7.8
2024-02-12 CVE-2024-0168 OS Command Injection vulnerability in Dell Unity Operating Environment
Dell Unity, versions prior to 5.4, contains a Command Injection Vulnerability in svc_oscheck utility.
local
low complexity
dell CWE-78
7.8