CWE-77— Command Injection
The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.— MITRE CWE catalog
4,102 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-77page 58 of 83
- CVE-2025-22472HIGHCVSS 7.8EG 7.82025-03-17
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access…
- CVE-2025-22473HIGHCVSS 7.8EG 7.82025-03-17
Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access…
- CVE-2025-22476MEDIUMCVSS 5.5EG 5.52025-05-06
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with adjacent network access could p…
- CVE-2025-22481HIGHCVSS 8.8EG 8.82025-06-06
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user access to execute arbitrary commands. We have already …
- CVE-2025-22630CRITICALCVSS 9.9EG 9.92025-02-14
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Marketing Fire Widget Options widget-options allows OS Command Injection.This issue affects Widget Options: from n/a through <= 4.1.0.
- CVE-2025-22912CRITICALCVSS 9.8EG 9.82025-01-16
RE11S v1.11 was discovered to contain a command injection vulnerability via the component /goform/formAccept.
- CVE-2025-22939CRITICALCVSS 9.8EG 9.82025-03-31
A command injection vulnerability in the telnet service of Adtran 411 ONT L80.00.0011.M2 allows attackers to escalate privileges to root and execute arbitrary commands.
- CVE-2025-22941CRITICALCVSS 9.8EG 9.82025-03-31
A command injection vulnerability in the web interface of Adtran 411 ONT L80.00.0011.M2 allows attackers to escalate privileges to root and execute arbitrary commands.
- CVE-2025-22949CRITICALCVSS 9.8EG 9.82025-01-10
Tenda ac9 v1.0 firmware v15.03.05.19 is vulnerable to command injection in /goform/SetSambaCfg, which may lead to remote arbitrary code execution.
- CVE-2025-22962HIGHCVSS 7.2EG 7.22025-02-13
A critical remote code execution (RCE) vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters when debugging mode is enabled. An attacker with a valid session ID (sess_id) can send specially c…
- CVE-2025-22978CRITICALCVSS 9.8EG 9.82025-02-03
eladmin <=2.7 is vulnerable to CSV Injection in the exception log download module.
- CVE-2025-23052HIGHCVSS 7.2EG 7.22025-01-14
Authenticated command injection vulnerability in the command line interface of a network management service. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands as a privileged user on the…
- CVE-2025-23094HIGHCVSS 7.3EG 7.32025-02-06
The Platform component of Mitel OpenScape 4000 and OpenScape 4000 Manager V11 R0.22.0 through V11 R0.22.1, V10 R1.54.0 through V10 R1.54.1, and V10 R1.42.6 and earlier could allow an unauthenticated attacker to conduct a command injection …
- CVE-2025-23119HIGHCVSS 7.5EG 7.52025-03-01
An Improper Neutralization of Escape Sequences vulnerability could allow an Authentication Bypass with a Remote Code Execution (RCE) by a malicious actor with access to UniFi Protect Cameras adjacent network.
- CVE-2025-23170MEDIUMCVSS 6.7EG 6.72025-06-19
The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the Director shell via Shell-In-A-Box. The underlying Python script, shell-connect.py, is vulnerable to command injection t…
- CVE-2025-23196HIGHCVSS 8.8EG 8.82025-01-21
A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining alert scripts, where the script filename f…
- CVE-2025-23239HIGHCVSS 8.7EG 8.72025-02-05
When running in Appliance mode, and logged into a highly-privileged role, an authenticated remote command injection vulnerability exists in an undisclosed iControl REST endpoint. A successful exploit can allow the attacker to cross a secur…
- CVE-2025-2367MEDIUMCVSS 6.3EG 6.32025-03-17
A vulnerability has been found in Oiwtech OIW-2431APGN-HP 2.5.3-B20131128 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formScript of the component Personal Script Submenu. The manipulation leads t…
- CVE-2025-24049HIGHCVSS 8.4EG 8.42025-03-11
Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.
- CVE-2025-24150HIGHCVSS 8.8EG 8.82025-01-27
A privacy issue was addressed with improved handling of files. This issue is fixed in Safari 18.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3. Copying a URL from Web Inspector may lead to command injection.
- CVE-2025-24285CRITICALCVSS 9.8EG 9.82025-08-21
Multiple Improper Input Validation vulnerabilities in UniFi Connect EV Station Lite may allow a Command Injection by a malicious actor with network access to the UniFi Connect EV Station Lite. Affected Products: UniFi Connect EV Stati…
- CVE-2025-24293HIGHCVSS 8.1EG 8.12026-01-30
# Active Storage allowed transformation methods potentially unsafe Active Storage attempts to prevent the use of potentially unsafe image transformation methods and parameters by default. The default allowed list contains three meth…
- CVE-2025-24333MEDIUMCVSS 6.4EG 6.42025-07-02
Nokia Single RAN baseband software earlier than 24R1-SR 1.0 MP contains administrative shell input validation fault, which authenticated admin user can, in theory, potentially use for injecting arbitrary commands for unprivileged baseband …
- CVE-2025-24818HIGHCVSS 8.0EG 8.02026-04-07
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special elements used in an OS command in Log Search application.
- CVE-2025-24861HIGHCVSS 7.5EG 7.52025-02-13
An attacker may inject commands via specially-crafted post requests.
- CVE-2025-25274MEDIUMCVSS 4.3EG 4.32025-03-21
Mattermost versions 10.4.x <= 10.4.2, 10.3.x <= 10.3.3, 9.11.x <= 9.11.8 fail to restrict command execution in archived channels, which allows authenticated users to run commands in archived channels.
- CVE-2025-25364HIGHCVSS 8.4EG 8.42025-12-23
A command injection vulnerability in the me.connectify.SMJobBlessHelper XPC service of Speedify VPN up to v15.0.0 allows attackers to execute arbitrary commands with root-level privileges.
- CVE-2025-25504MEDIUMCVSS 6.5EG 6.52025-05-05
An issue in the /usr/local/bin/jncs.sh script of Gefen WebFWC (In AV over IP products) v1.85h, v1.86v, and v1.70 allows attackers with network access to connect to the device over TCP port 4444 without authentication and execute arbitrary …
- CVE-2025-25604MEDIUMCVSS 6.5EG 6.52025-02-21
Totolink X5000R V9.1.0u.6369_B20230113 is vulnerable to command injection via the vif_disable function in mtkwifi.lua.
- CVE-2025-25605MEDIUMCVSS 6.5EG 6.52025-02-21
Totolink X5000R V9.1.0u.6369_B20230113 is vulnerable to command injection via the apcli_wps_gen_pincode function in mtkwifi.lua.
- CVE-2025-25632CRITICALCVSS 9.8EG 9.82025-03-05
Tenda AC15 v15.03.05.19 is vulnerable to Command Injection via the handler function in /goform/telnet.
- CVE-2025-25675CRITICALCVSS 9.8EG 9.82025-02-20
Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput parameter from a POST request and is later assigned to the cmd_buf variable, which is direct…
- CVE-2025-25691MEDIUMCVSS 6.5EG 6.52025-07-30
A PHAR deserialization vulnerability in the component /themes/import of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted POST request.
- CVE-2025-25692MEDIUMCVSS 6.5EG 6.52025-07-30
A PHAR deserialization vulnerability in the _getHeaders function of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted POST request.
- CVE-2025-25743HIGHCVSS 7.2EG 7.22025-02-12
D-Link DIR-853 A1 FW1.20B07 was discovered to contain a command injection vulnerability in the SetVirtualServerSettings module.
- CVE-2025-25766MEDIUMCVSS 4.8EG 4.82025-02-21
An arbitrary file upload vulnerability in the component /file/savefile.do of MRCMS v3.1.2 allows attackers to execute arbitrary code via uploading a crafted .jsp file.
- CVE-2025-25768MEDIUMCVSS 5.4EG 5.42025-02-21
MRCMS v3.1.2 was discovered to contain a server-side template injection (SSTI) vulnerability in the component \servlet\DispatcherServlet.java. This vulnerability allows attackers to execute arbitrary code via a crafted payload.
- CVE-2025-25791MEDIUMCVSS 4.4EG 4.42025-02-26
An arbitrary file upload vulnerability in the plugin installation feature of YZNCMS v2.0.1 allows attackers to execute arbitrary code via uploading a crafted Zip file.
- CVE-2025-25792MEDIUMCVSS 4.4EG 4.42025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the isopen parameter at admin_weixin.php.
- CVE-2025-25793MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_notify.php.
- CVE-2025-25794MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ping.php.
- CVE-2025-25796MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_template.php.
- CVE-2025-25797MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_smtp.php.
- CVE-2025-25802MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ip.php.
- CVE-2025-25813MEDIUMCVSS 5.1EG 5.12025-02-26
SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_files.php.
- CVE-2025-26056MEDIUMCVSS 5.4EG 5.42025-04-01
A command injection vulnerability exists in the Infinxt iEdge 100 2.1.32 in the Troubleshoot module "MTR" functionality. The vulnerability is due to improper validation of user-supplied input in the mtrIp parameter. An attacker can exploit…
- CVE-2025-26063CRITICALCVSS 9.8EG 9.82025-07-31
An issue in Intelbras RX1500 v2.2.9 and RX3000 v1.0.11 allows unauthenticated attackers to execute arbitrary code via injecting a crafted payload into the ESSID name when creating a network.
- CVE-2025-26262MEDIUMCVSS 6.5EG 6.52025-05-06
An issue in the component /internals/functions of R-fx Networks Linux Malware Detect v1.6.5 allows attackers to escalate privileges and execute arbitrary code via supplying a file that contains a crafted filename.
- CVE-2025-26331HIGHCVSS 7.8EG 7.82025-03-07
Dell ThinOS 2411 and prior, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to…
- CVE-2025-26385CRITICALCVSS 9.5EG 9.52026-01-30
Johnson Controls Metasys component listed below have Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability . Successful exploitation of this vulnerability could allow remote SQL execution This iss…
Map vulnerabilities like CWE-77 to your infrastructure
EchelonGraph correlates every CVE — across CWE-77 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →