Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2015-2201 OS Command Injection vulnerability in multiple products
Aruba AirWave before 7.7.14.2 and 8.x before 8.0.7 allows VisualRF remote OS command execution and file disclosure by administrative users.
network
low complexity
hp arubanetworks CWE-78
7.2
2023-09-01 CVE-2023-4711 OS Command Injection vulnerability in Dlink Dar-8000-10 Firmware 20230809/20230819
A vulnerability, which was classified as critical, has been found in D-Link DAR-8000-10 up to 20230819.
network
high complexity
dlink CWE-78
8.1
2023-08-30 CVE-2023-40582 OS Command Injection vulnerability in Find-Exec Project Find-Exec
find-exec is a utility to discover available shell commands.
network
low complexity
find-exec-project CWE-78
critical
9.8
2023-08-30 CVE-2023-40837 OS Command Injection vulnerability in Tenda AC6 Firmware 15.03.05.16
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADD50' contains a command execution vulnerability.
network
low complexity
tenda CWE-78
critical
9.8
2023-08-30 CVE-2023-40838 OS Command Injection vulnerability in Tenda AC6 Firmware 15.03.05.16
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_3A1D0' contains a command execution vulnerability.
network
low complexity
tenda CWE-78
critical
9.8
2023-08-30 CVE-2023-40839 OS Command Injection vulnerability in Tenda AC6 Firmware 15.03.05.16
Tenda AC6 US_AC6V1.0BR_V15.03.05.16_multi_TD01.bin function 'sub_ADF3C' contains a command execution vulnerability.
network
low complexity
tenda CWE-78
critical
9.8
2023-08-28 CVE-2023-41109 OS Command Injection vulnerability in Patton Smartnode Sn200 Firmware 2.21.122041/3.21.223021
SmartNode SN200 (aka SN200) 3.21.2-23021 allows unauthenticated OS Command Injection.
network
low complexity
patton CWE-78
critical
9.8
2023-08-28 CVE-2023-1997 OS Command Injection vulnerability in 3DS 3Dexperience R2021X/R2022X/R2023X
An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x.
network
low complexity
3ds CWE-78
8.8
2023-08-28 CVE-2023-38025 OS Command Injection vulnerability in Myspotcam FHD 2 Firmware
SpotCam Co., Ltd.
network
low complexity
myspotcam CWE-78
critical
9.8
2023-08-28 CVE-2023-38027 OS Command Injection vulnerability in Myspotcam Sense Firmware
SpotCam Co., Ltd.
network
low complexity
myspotcam CWE-78
critical
9.8