Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2025-51390 |
|
OS Command Injection in totolink (CVE-2025-51390)
OS command injection in totolink (CVE-2025-51390). Successful exploitation can lead to full system takeover.
|
| CVE-2013-10050 |
|
OS Command Injection in dlink (CVE-2013-10050)
OS command injection in dlink (CVE-2013-10050). Successful exploitation can lead to full system takeover.
|
| CVE-2025-29534 |
|
OS Command Injection in CVE-2025-29534 (CVE-2025-29534)
OS command injection in CVE-2025-29534 (CVE-2025-29534). Successful exploitation can lead to full system takeover.
|
| CVE-2025-5243 |
|
OS Command Injection in CVE-2025-5243 (CVE-2025-5243)
OS command injection in CVE-2025-5243 (CVE-2025-5243). Successful exploitation can lead to full system takeover.
|
| CVE-2025-34088 |
|
OS Command Injection in pandorafms (CVE-2025-34088)
OS command injection in pandorafms (CVE-2025-34088). Successful exploitation can lead to full system takeover.
|
| CVE-2025-34037 |
|
OS Command Injection in CVE-2025-34037 (CVE-2025-34037)
OS command injection in CVE-2025-34037 (CVE-2025-34037). Risk of unauthorized operations or information disclosure.
|
| CVE-2023-39780 KEV |
|
[KEV] OS Command Injection in Asus rt-ax55-routers (CVE-2023-39780)
OS command injection in Asus rt-ax55-routers (CVE-2023-39780). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-12987 KEV |
|
[KEV] OS Command Injection in Draytek vigor-routers (CVE-2024-12987)
OS command injection in Draytek vigor-routers (CVE-2024-12987). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-11120 KEV |
|
[KEV] OS Command Injection in Geovision multiple-devices (CVE-2024-11120)
OS command injection in Geovision multiple-devices (CVE-2024-11120). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-6047 KEV |
|
[KEV] OS Command Injection in Geovision multiple-devices (CVE-2024-6047)
OS command injection in Geovision multiple-devices (CVE-2024-6047). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-44221 KEV |
|
[KEV] OS Command Injection in Sonicwall sma100-appliances (CVE-2023-44221)
OS command injection in Sonicwall sma100-appliances (CVE-2023-44221). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-20035 KEV |
|
[KEV] OS Command Injection in Sonicwall sma100-appliances (CVE-2021-20035)
OS command injection in Sonicwall sma100-appliances (CVE-2021-20035). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-31692 |
|
OS Command Injection in drupal (CVE-2025-31692)
OS command injection in drupal (CVE-2025-31692). Successful exploitation can lead to full system takeover.
|
| CVE-2025-31693 |
|
OS Command Injection in drupal (CVE-2025-31693)
OS command injection in drupal (CVE-2025-31693). Successful exploitation can lead to full system takeover.
|
| CVE-2025-1316 KEV |
|
[KEV] OS Command Injection in Edimax ic-7100-ip-camera (CVE-2025-1316)
OS command injection in Edimax ic-7100-ip-camera (CVE-2025-1316). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2025-1244 |
|
OS Command Injection in CVE-2025-1244 (CVE-2025-1244)
OS command injection in CVE-2025-1244 (CVE-2025-1244). Successful exploitation can lead to full system takeover.
|
| CVE-2024-40891 KEV |
|
[KEV] OS Command Injection in Zyxel dsl-cpe-devices (CVE-2024-40891)
OS command injection in Zyxel dsl-cpe-devices (CVE-2024-40891). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-40890 KEV |
|
[KEV] OS Command Injection in Zyxel dsl-cpe-devices (CVE-2024-40890)
OS command injection in Zyxel dsl-cpe-devices (CVE-2024-40890). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-9276 KEV |
|
[KEV] OS Command Injection in Paessler prtg-network-monitor (CVE-2018-9276)
OS command injection in Paessler prtg-network-monitor (CVE-2018-9276). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-50603 KEV |
|
[KEV] OS Command Injection in Aviatrix controllers (CVE-2024-50603)
OS command injection in Aviatrix controllers (CVE-2024-50603). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-12686 KEV |
|
[KEV] OS Command Injection in Beyondtrust privileged-remote-access-pra-and-remote-support-rs (CVE-2024-12686)
OS command injection in Beyondtrust privileged-remote-access-pra-and-remote-support-rs (CVE-2024-12686). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-12970 |
|
OS Command Injection in CVE-2024-12970 (CVE-2024-12970)
OS command injection in CVE-2024-12970 (CVE-2024-12970). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-40407 KEV |
|
[KEV] OS Command Injection in Reolink rlc-410w-ip-camera (CVE-2021-40407)
OS command injection in Reolink rlc-410w-ip-camera (CVE-2021-40407). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11001 KEV |
|
[KEV] OS Command Injection in Reolink multiple-ip-cameras (CVE-2019-11001)
OS command injection in Reolink multiple-ip-cameras (CVE-2019-11001). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-14933 KEV |
|
[KEV] OS Command Injection in Nuuo nvrmini-devices (CVE-2018-14933)
OS command injection in Nuuo nvrmini-devices (CVE-2018-14933). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-51378 KEV |
|
[KEV] OS Command Injection in Cyberpersons cyberpanel (CVE-2024-51378)
OS command injection in Cyberpersons cyberpanel (CVE-2024-51378). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2024-52723 |
|
OS Command Injection in totolink (CVE-2024-52723)
OS command injection in totolink (CVE-2024-52723). Successful exploitation can lead to full system takeover.
|
| CVE-2024-9474 KEV |
|
[KEV] OS Command Injection in Palo alto networks palo-alto-networks (CVE-2024-9474)
OS command injection in Palo alto networks palo-alto-networks (CVE-2024-9474). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2024-1212 KEV |
|
[KEV] OS Command Injection in Progress kemp-loadmaster (CVE-2024-1212)
OS command injection in Progress kemp-loadmaster (CVE-2024-1212). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2024-9463 KEV |
|
[KEV] OS Command Injection in Palo alto networks palo-alto-networks (CVE-2024-9463)
OS command injection in Palo alto networks palo-alto-networks (CVE-2024-9463). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-10035 |
|
Command Injection in privilege-escalation (CVE-2024-10035)
command injection in privilege-escalation (CVE-2024-10035). Successful exploitation can lead to full system takeover.
|
| CVE-2024-8957 KEV |
|
[KEV] OS Command Injection in Ptzoptics pt30x-sdindi-cameras (CVE-2024-8957)
OS command injection in Ptzoptics pt30x-sdindi-cameras (CVE-2024-8957). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-15415 KEV |
|
[KEV] OS Command Injection in Draytek multiple-vigor-routers (CVE-2020-15415)
OS command injection in Draytek multiple-vigor-routers (CVE-2020-15415). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-25280 KEV |
|
[KEV] OS Command Injection in D-link dir-820-router (CVE-2023-25280)
OS command injection in D-link dir-820-router (CVE-2023-25280). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-8190 KEV |
|
[KEV] OS Command Injection in Ivanti cloud-services-appliance (CVE-2024-8190)
OS command injection in Ivanti cloud-services-appliance (CVE-2024-8190). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-6917 |
|
OS Command Injection in veribase (CVE-2024-6917)
OS command injection in veribase (CVE-2024-6917). Successful exploitation can lead to full system takeover.
|
| CVE-2024-38887 |
|
OS Command Injection in horizoncloud (CVE-2024-38887)
OS command injection in horizoncloud (CVE-2024-38887). Successful exploitation can lead to full system takeover.
|
| CVE-2024-38889 |
|
SQL Injection in sqli (CVE-2024-38889)
SQL injection in sqli (CVE-2024-38889). Successful exploitation can lead to full system takeover.
|
| CVE-2024-38882 |
|
OS Command Injection in sqli (CVE-2024-38882)
OS command injection in sqli (CVE-2024-38882). Successful exploitation can lead to full system takeover.
|
| CVE-2024-20399 KEV |
|
[KEV] OS Command Injection in Cisco nx-os (CVE-2024-20399)
OS command injection in Cisco nx-os (CVE-2024-20399). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-37626 |
|
OS Command Injection in totolink (CVE-2024-37626)
OS command injection in totolink (CVE-2024-37626). Successful exploitation can lead to full system takeover.
|
| CVE-2024-4577 KEV |
|
[KEV] OS Command Injection in Php group php-group (CVE-2024-4577)
OS command injection in Php group php-group (CVE-2024-4577). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-3506 KEV |
|
[KEV] OS Command Injection in Oracle weblogic-server (CVE-2017-3506)
OS command injection in Oracle weblogic-server (CVE-2017-3506). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2024-20358 |
|
OS Command Injection in cisco (CVE-2024-20358)
OS command injection in cisco (CVE-2024-20358). Confidential information can be exposed externally.
|
| CVE-2024-29640 |
|
Command Injection in aliyundrive-webdav (CVE-2024-29640)
command injection in aliyundrive-webdav (CVE-2024-29640). Successful exploitation can lead to full system takeover. Exploitable via ``action_query_qrcode``.
|
| CVE-2023-6437 |
|
OS Command Injection in CVE-2023-6437 (CVE-2023-6437)
OS command injection in CVE-2023-6437 (CVE-2023-6437). Successful exploitation can lead to full system takeover.
|
| CVE-2019-7256 KEV |
|
[KEV] OS Command Injection in Nice linear-emerge-e3-series (CVE-2019-7256)
OS command injection in Nice linear-emerge-e3-series (CVE-2019-7256). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-47415 |
|
OS Command Injection in cypress (CVE-2023-47415)
OS command injection in cypress (CVE-2023-47415). Data can be tampered with by attackers.
|
| CVE-2021-36380 KEV |
|
[KEV] OS Command Injection in Sunhillo sureline (CVE-2021-36380)
OS command injection in Sunhillo sureline (CVE-2021-36380). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2023-46359 |
|
OS Command Injection in hardy-barth (CVE-2023-46359)
OS command injection in hardy-barth (CVE-2023-46359). Successful exploitation can lead to full system takeover.
|