Skip to main content

CWE archive

CWE-78 CVEs

Programmatic archive

6,377 CVEs tagged with CWE-782,056 Critical, 3,220 High, 906 Medium, 194 Low, 1 Unrated.

CVE-2012-6604

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11 and 4.0.x before 4.0.9 allows remote authenticated users to execute arbitrary code via unsp…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6602

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote authenticated users to execute arbitrary commands via…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6601

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.12, 4.0.x before 4.0.10, and 4.1.x before 4.1.4 allows remote attackers to execute arbitrary c…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6600

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated users to execute arbitrary commands…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6599

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 and 4.1.x before 4.1.1 allows remote authenticated users to execute arbitrary commands…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6598

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.8 allows remote authenticated users to execute arbitrary commands via unspecified vector…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6595

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS 4.0.x before 4.0.9 and 4.1.x before 4.1.2 allows remote authenticated administrators to execute arbitrary…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6594

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.11, 4.0.x before 4.0.8, and 4.1.x before 4.1.1 allows remote authenticated administrators to e…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6593

Published Aug 31, 2013

Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.4 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 30088.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6592

Published Aug 31, 2013

Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote attackers to execute arbitrary commands via unspecified vectors, aka Ref ID 31091.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-6591

Published Aug 31, 2013

The device-management command-line interface in Palo Alto Networks PAN-OS before 3.1.10 and 4.0.x before 4.0.5 allows remote authenticated administrators to execute arbitrary comm…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-3576

Published Jun 14, 2013

ginkgosnmp.inc in HP System Management Homepage (SMH) allows remote authenticated users to execute arbitrary commands via shell metacharacters in the PATH_INFO to smhutil/snmpchp.…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0804

Published Feb 24, 2013

The client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer deref…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-0928

Published Jan 21, 2013

The NetWorker command processor in rrobotd.exe in the Device Manager in EMC AlphaStor 4.0 before build 800 allows remote attackers to execute arbitrary commands via a DCP "run com…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-3001

Published Oct 22, 2012

Mutiny Standard before 4.5-1.12 allows remote attackers to execute arbitrary commands via the network-interface menu, related to a "command injection vulnerability."

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-4011

Published Sep 8, 2012

The Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or execute arbitrary commands, vi…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-4361

Published Aug 20, 2012

lhn/public/network/ping in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the sec…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2012-2986

Published Aug 20, 2012

lhn/public/network/ping in HP SAN/iQ 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) first,…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort
Showing 6,276-6,300 of 6,377 CVEsPage 252 of 256