Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-08-01 CVE-2022-33955 OS Command Injection vulnerability in IBM Cics TX 11.1
IBM CICS TX 11.1 could allow allow an attacker with physical access to the system to execute code due using a back and refresh attack.
low complexity
ibm CWE-78
6.8
2022-07-29 CVE-2022-34527 OS Command Injection vulnerability in Dlink Dsl-3782 Firmware 1.01/1.03
D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160.
network
low complexity
dlink CWE-78
8.8
2022-07-27 CVE-2022-23100 OS Command Injection vulnerability in Open-Xchange OX APP Suite 7.10.5
OX App Suite through 7.10.6 allows OS Command Injection via Documentconverter (e.g., through an email attachment).
network
low complexity
open-xchange CWE-78
critical
9.8
2022-07-27 CVE-2022-24405 OS Command Injection vulnerability in Open-Xchange OX APP Suite 7.10.5
OX App Suite through 7.10.6 allows OS Command Injection via a serialized Java class to the Documentconverter API.
network
low complexity
open-xchange CWE-78
critical
9.8
2022-07-22 CVE-2022-20910 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20885 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20886 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20887 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20888 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20884 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2