Skip to main content

CWE archive

CWE-78 CVEs

Programmatic archive

6,180 CVEs tagged with CWE-781,976 Critical, 3,126 High, 890 Medium, 188 Low, 0 Unrated.

CVE-2017-6320

Published Jul 18, 2017

A remote command injection vulnerability exists in the Barracuda Load Balancer product line (confirmed on v5.4.0.004 (2015-11-26) and v6.0.1.006 (2016-08-19); fixed in 6.1.0.003 (…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1318

Published Jul 18, 2017

IBM MQ Appliance 8.0 and 9.0 could allow an authenticated messaging administrator to execute arbitrary commands on the system, caused by command execution. IBM X-Force ID: 125730.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-11318

Published Jul 17, 2017

Cobian Backup 11 client allows man-in-the-middle attackers to add and execute new backup tasks when the master server is spoofed. In addition, the attacker can execute system comm…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2017-4053

Published Jul 12, 2017

Command Injection vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to execute…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-7175

Published Jul 10, 2017

NfSen before 1.3.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the customfmt parameter (aka the "Custom output format" field).

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-6714

Published Jul 6, 2017

A vulnerability in the AutoIT service of Cisco Ultra Services Framework Staging Server could allow an unauthenticated, remote attacker to execute arbitrary shell commands as the L…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2017-6712

Published Jul 6, 2017

A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run dangerous commands on…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2017-6707

Published Jul 6, 2017

A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 through 21.0, 5500 Series, and 5700 Series devices and Cisco Vi…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2017-1253

Published Jul 5, 2017

IBM Security Guardium 10.0 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could explo…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort
Showing 5,876-5,900 of 6,180 CVEsPage 236 of 248