All vulnerabilities
234 / 234
Sort
9.8
CVE-2024-3273CVE KEV
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in…
2024-01-01KEV
EPSS94.4%
pct 99
9.1
CVE-2024-21887CVE KEV
A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Iv…
2024-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2012-1823DEB KEV
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI scrip…
2012-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2016-1555CVE KEV
(1) boardData102.php, (2) boardData103.php, (3) boardDataJP.php, (4) boardDataNA.php, and (5) b…
2016-01-01KEV
EPSS94.3%
pct 99
10.0
CVE-2024-3400CVE KEV
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect f…
2024-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2023-1671CVE KEV
A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance …
2023-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2023-20887CVE KEV
Aria Operations for Networks contains a command injection vulnerability. A malicious actor with…
2023-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2023-23333CVE
There is a command injection vulnerability in SolarView Compact through 6.00, attackers can exe…
2023-01-01Pre-auth
EPSS94.2%
pct 99
9.4
CVE-2024-9264ANC
The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queri…
2024-01-01
EPSS94.0%
pct 99
9.8
CVE-2007-3010CVE KEV
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7…
2007-01-01KEV
EPSS94.0%
pct 99
9.8
CVE-2023-34960CVE
A command injection vulnerability in the wsConvertPpt component of Chamilo v1.11.* up to v1.11.…
2023-01-01Pre-auth
EPSS94.0%
pct 99
8.1
CVE-2016-3081DEB
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method…
2016-01-01Pre-auth
EPSS94.0%
pct 99
9.8
CVE-2023-47253CVE
Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the htm…
2023-01-01Pre-auth
EPSS93.9%
pct 99
7.2
CVE-2023-29084CVE
Zoho ManageEngine ADManager Plus before 7181 allows for authenticated users to exploit command …
2023-01-01
EPSS93.9%
pct 99
8.8
CVE-2018-1335DEB
From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-ser…
2018-01-01
EPSS93.9%
pct 99
9.8
CVE-2024-12356CVE KEV
A critical vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Suppo…
2024-01-01KEV
EPSS93.9%
pct 99
7.0
CVE-2017-11610DEB
The XML-RPC server in supervisor before 3.0.1, 3.1.x before 3.1.4, 3.2.x before 3.2.4, and 3.3.…
2017-01-01
EPSS93.8%
pct 99
8.1
CVE-2019-5420DEB
A remote code execution vulnerability in development mode Rails <5.2.2.1, <6.0.0.beta3 can allo…
2019-01-01Pre-auth
EPSS93.7%
pct 99
9.8
CVE-2022-40881CVE
SolarView Compact 6.00 was discovered to contain a command injection vulnerability via network_…
2022-01-01Pre-auth
EPSS93.7%
pct 99
9.8
CVE-2022-36553CVE
Hytec Inter HWL-2511-SS v1.05 and below was discovered to contain a command injection vulnerabi…
2022-01-01Pre-auth
EPSS93.6%
pct 99
8.8
CVE-2022-33891DEB KEV
The Apache Spark UI offers the possibility to enable ACLs via the configuration option spark.ac…
2022-01-01KEV
EPSS93.5%
pct 99
8.8
CVE-2024-29269CVE
An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary…
2024-01-01
EPSS93.5%
pct 99
9.8
CVE-2016-10045DEB
The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra para…
2016-01-01Pre-auth
EPSS93.4%
pct 99
9.8
CVE-2023-33831CVE
A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 al…
2023-01-01Pre-auth
EPSS93.4%
pct 99
8.8
CVE-2023-1389CVE KEV
TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command …
2023-01-01KEV
EPSS93.3%
pct 99
10.0
CVE-2024-29895DEB
Cacti provides an operational monitoring and fault management framework. A command injection vu…
2024-01-01Pre-auth
EPSS93.2%
pct 99
8.3
CVE-2023-47218CVE
An OS command injection vulnerability has been reported to affect several QNAP operating system…
2023-01-01Pre-auth
EPSS93.2%
pct 99
9.8
CVE-2022-39986CVE
A Command injection vulnerability in RaspAP 2.8.0 thru 2.8.7 allows unauthenticated attackers t…
2022-01-01Pre-auth
EPSS93.1%
pct 99
8.8
CVE-2015-2051CVE KEV
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remot…
2015-01-01KEV
EPSS93.0%
pct 99
8.7
CVE-2024-7029CVE
Commands can be injected over the network and executed without authentication.
2024-01-01
EPSS93.0%
pct 99
7.3
CVE-2017-8291DEB KEV
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .…
2017-01-01KEV
EPSS92.9%
pct 99
9.8
CVE-2023-50917CVE
MajorDoMo (aka Major Domestic Module) before 0662e5e allows command execution via thumb.php she…
2023-01-01Pre-auth
EPSS92.6%
pct 99
6.9
CVE-2024-11320CVE
Arbitrary commands execution on the server by exploiting a command injection vulnerability in t…
2024-01-01
EPSS92.6%
pct 99
9.8
CVE-2024-4883CVE
In WhatsUp Gold versions released before 2023.1.3, a Remote Code Execution issue exists in Prog…
2024-01-01Pre-auth
EPSS92.2%
pct 99
9.8
CVE-2016-20017CVE KEV
D-Link DSL-2750B devices before 1.05 allow remote unauthenticated command injection via the log…
2016-01-01KEV
EPSS92.1%
pct 99
9.8
CVE-2023-31446CVE
In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl pa…
2023-01-01Pre-auth
EPSS91.7%
pct 99
9.8
CVE-2021-4045CVE
TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauth…
2021-01-01Pre-auth
EPSS91.0%
pct 99
9.8
CVE-2024-3116ANC
pgAdmin <= 8.4 is affected by a Remote Code Execution (RCE) vulnerability through the validate…
2024-01-01Pre-auth
EPSS90.7%
pct 99
8.8
CVE-2023-33538CVE KEV
TP-Link TL-WR940N V2/V4, TL-WR841N V8/V10, and TL-WR740N V1/V2 was discovered to contain a comm…
2023-01-01KEV
EPSS90.6%
pct 99
9.8
CVE-2005-2773CVE KEV
HP OpenView Network Node Manager 6.2 through 7.50 allows remote attackers to execute arbitrary …
2005-01-01KEV
EPSS89.8%
pct 99
Select a vulnerability on the left to open the preview.