Total
3575 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-36756 | 1 Dlink | 2 Dir-845l, Dir-845l Firmware | 2024-02-04 | N/A | 9.8 CRITICAL |
DIR845L A1 v1.00-v1.03 is vulnerable to command injection via /htdocs/upnpinc/gena.php. | |||||
CVE-2022-29813 | 1 Jetbrains | 1 Intellij Idea | 2024-02-04 | 4.6 MEDIUM | 6.7 MEDIUM |
In JetBrains IntelliJ IDEA before 2022.1 local code execution via custom Pandoc path was possible | |||||
CVE-2022-24711 | 1 Codeigniter | 1 Codeigniter | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
CodeIgniter4 is the 4.x branch of CodeIgniter, a PHP full-stack web framework. Prior to version 4.1.9, an improper input validation vulnerability allows attackers to execute CLI routes via HTTP request. Version 4.1.9 contains a patch. There are currently no known workarounds for this vulnerability. | |||||
CVE-2021-39383 | 1 Diaowen | 1 Dwsurvey | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
DWSurvey v3.2.0 was discovered to contain a remote command execution (RCE) vulnerability via the component /sysuser/SysPropertyAction.java. | |||||
CVE-2022-2014 | 1 Diagrams | 1 Drawio | 2024-02-04 | 3.5 LOW | 5.4 MEDIUM |
Code Injection in GitHub repository jgraph/drawio prior to 19.0.2. | |||||
CVE-2022-25760 | 1 Accesslog Project | 1 Accesslog | 2024-02-04 | 10.0 HIGH | 9.8 CRITICAL |
All versions of package accesslog are vulnerable to Arbitrary Code Injection due to the usage of the Function constructor without input sanitization. If (attacker-controlled) user input is given to the format option of the package's exported constructor function, it is possible for an attacker to execute arbitrary JavaScript code on the host that this package is being run on. | |||||
CVE-2017-20086 | 1 Automattic | 1 Vaultpress | 2024-02-04 | 6.0 MEDIUM | 7.5 HIGH |
A vulnerability, which was classified as critical, was found in VaultPress Plugin 1.8.4. This affects an unknown part. The manipulation leads to code injection. It is possible to initiate the attack remotely. | |||||
CVE-2022-23810 | 1 Appleple | 1 A-blog Cms | 2024-02-04 | 4.0 MEDIUM | 6.5 MEDIUM |
Template injection (Improper Neutralization of Special Elements Used in a Template Engine) vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated attacker to obtain an arbitrary file on the server via unspecified vectors. | |||||
CVE-2022-29821 | 1 Jetbrains | 1 Pycharm | 2024-02-04 | 4.4 MEDIUM | 7.7 HIGH |
In JetBrains Rider before 2022.1 local code execution via links in ReSharper Quick Documentation was possible | |||||
CVE-2020-15591 | 1 Uni-stuttgart | 1 Frams\' Fast File Exchange | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
fexsrv in F*EX (aka Frams' Fast File EXchange) before fex-20160919_2 allows eval injection (for unauthenticated remote code execution). | |||||
CVE-2021-46362 | 1 Magnolia-cms | 1 Magnolia Cms | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
A Server-Side Template Injection (SSTI) vulnerability in the Registration and Forgotten Password forms of Magnolia v6.2.3 and below allows attackers to execute arbitrary code via a crafted payload entered into the fullname parameter. | |||||
CVE-2022-24665 | 1 Php Everywhere Project | 1 Php Everywhere | 2024-02-04 | 6.5 MEDIUM | 8.8 HIGH |
PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via a WordPress gutenberg block by any user able to edit posts. | |||||
CVE-2022-29814 | 1 Jetbrains | 1 Intellij Idea | 2024-02-04 | 4.4 MEDIUM | 7.7 HIGH |
In JetBrains IntelliJ IDEA before 2022.1 local code execution via HTML descriptions in custom JSON schemas was possible | |||||
CVE-2022-24734 | 1 Mybb | 1 Mybb | 2024-02-04 | 6.5 MEDIUM | 7.2 HIGH |
MyBB is a free and open source forum software. In affected versions the Admin CP's Settings management module does not validate setting types correctly on insertion and update, making it possible to add settings of supported type `php` with PHP code, executed on on _Change Settings_ pages. This results in a Remote Code Execution (RCE) vulnerability. The vulnerable module requires Admin CP access with the `Can manage settings?` permission. MyBB's Settings module, which allows administrators to add, edit, and delete non-default settings, stores setting data in an options code string ($options_code; mybb_settings.optionscode database column) that identifies the setting type and its options, separated by a new line character (\n). In MyBB 1.2.0, support for setting type php was added, for which the remaining part of the options code is PHP code executed on Change Settings pages (reserved for plugins and internal use). MyBB 1.8.30 resolves this issue. There are no known workarounds. | |||||
CVE-2022-24780 | 1 Combodo | 1 Itop | 2024-02-04 | 6.5 MEDIUM | 8.8 HIGH |
Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.6 and 3.0.0, users of the iTop user portal can send TWIG code to the server by forging specific http queries, and execute arbitrary code on the server using http server user privileges. This issue is fixed in versions 2.7.6 and 3.0.0. There are currently no known workarounds. | |||||
CVE-2021-26622 | 2 Genians, Microsoft | 2 Genian Nac, Windows | 2024-02-04 | 10.0 HIGH | 10.0 CRITICAL |
An remote code execution vulnerability due to SSTI vulnerability and insufficient file name parameter validation was discovered in Genian NAC. Remote attackers are able to execute arbitrary malicious code with SYSTEM privileges on all connected nodes in NAC through this vulnerability. | |||||
CVE-2021-46063 | 1 Mingsoft | 1 Mcms | 2024-02-04 | 6.4 MEDIUM | 9.1 CRITICAL |
MCMS v5.2.5 was discovered to contain a Server Side Template Injection (SSTI) vulnerability via the Template Management module. | |||||
CVE-2021-42651 | 1 Pentest Collaboration Framework Project | 1 Pentest Collaboration Framework | 2024-02-04 | 6.5 MEDIUM | 8.8 HIGH |
A Server Side Template Injection (SSTI) vulnerability in Pentest-Collaboration-Framework v1.0.8 allows an authenticated remote attacker to execute arbitrary code through /project/PROJECTNAME/reports/. | |||||
CVE-2022-29078 | 1 Ejs | 1 Ejs | 2024-02-04 | 7.5 HIGH | 9.8 CRITICAL |
The ejs (aka Embedded JavaScript templates) package 3.1.6 for Node.js allows server-side template injection in settings[view options][outputFunctionName]. This is parsed as an internal option, and overwrites the outputFunctionName option with an arbitrary OS command (which is executed upon template compilation). | |||||
CVE-2021-27446 | 1 Weintek | 32 Cmt-ctrl01, Cmt-ctrl01 Firmware, Cmt-fhd and 29 more | 2024-02-04 | 10.0 HIGH | 9.8 CRITICAL |
The Weintek cMT product line is vulnerable to code injection, which may allow an unauthenticated remote attacker to execute commands with root privileges on the operation system. |