Vulnerabilities > Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-07-28 CVE-2022-22684 OS Command Injection vulnerability in Synology Diskstation Manager
Improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability in task management component in Synology DiskStation Manager (DSM) before 6.2.4-25553 allows remote authenticated users to execute arbitrary commands via unspecified vectors.
network
low complexity
synology CWE-78
8.8
2022-07-27 CVE-2022-23100 OS Command Injection vulnerability in Open-Xchange OX APP Suite 7.10.5/7.10.6
OX App Suite through 7.10.6 allows OS Command Injection via Documentconverter (e.g., through an email attachment).
network
low complexity
open-xchange CWE-78
critical
9.8
2022-07-27 CVE-2022-24405 OS Command Injection vulnerability in Open-Xchange OX APP Suite 7.10.5/7.10.6
OX App Suite through 7.10.6 allows OS Command Injection via a serialized Java class to the Documentconverter API.
network
low complexity
open-xchange CWE-78
critical
9.8
2022-07-22 CVE-2022-20910 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20885 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20886 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20887 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20888 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20884 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2
2022-07-21 CVE-2022-20881 OS Command Injection vulnerability in Cisco products
Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device or cause the device to restart unexpectedly, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-78
7.2