CWE-77
MITRE ↗Improper Neutralization of Special Elements used in a Command (Command Injection)
An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when startin
China Mobile An Lianbao WF-1 V1.0.1 router provides a web interface /api/ZRRuleFilter/set_firewall_level which receives
China Mobile An Lianbao WF-1 V1.0.1 router provides a web interface /api/ZRMesh/set_ZRMesh which receives parameters by
Gerapy is a distributed crawler management framework. Prior to version 0.9.9, an authenticated user could execute arbitr
CompleteFTPService.exe in the server in EnterpriseDT CompleteFTP before 12.1.4 allows Remote Code Execution by leveragin
CommScope SURFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection.
A remote code execution vulnerability was identified in GitHub Enterprise Server that could be exploited when building a
Multiple authenticated remote code execution vulnerabilities were discovered in the AOS-CX command line interface in Aru
An authenticated remote code execution vulnerability was discovered in the AOS-CX Network Analytics Engine (NAE) in Arub
Improper neutralization of special elements used in a command ('Command Injection') vulnerability in File service functi
An authenticated user may be able to misuse parameters to inject arbitrary operating system commands into mySCADA myPRO
In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remo
An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker with privileges to create a new pipeline on a Go
In Bender/ebee Charge Controllers in multiple versions are prone to Command injection via Web interface. An authenticate
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.191
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.191
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.191
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.191
A command injection vulnerability has been reported to affect QNAP NAS running QuTScloud, QuTS hero and QTS. If exploite
An OS command injection vulnerability exists in the daretools binary functionality of InHand Networks InRouter302 V3.5.4
An OS command injection vulnerability exists in the httpd wlscan_ASP functionality of InHand Networks InRouter302 V3.5.4
Vulnerability in rconfig “date” enables an attacker with user level access to the CLI to inject root level commands into
Vulnerability in rconfig “cert_utils” enables an attacker with user level access to the CLI to inject root level command
Vulnerability in rconfig “remote_text_file” enables an attacker with user level access to the CLI to inject user level c
Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter
Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter
Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter
GoCD is a continuous delivery server. In GoCD versions prior to 22.1.0, it is possible for existing authenticated users
PhoneSystem Terminal in 3CX Phone System (Debian based installation) 16.0.0.1570 allows an authenticated attacker to run
A vulnerability classified as critical has been found in SevOne Network Management System up to 5.7.2.22. This affects t
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application cont
Realtek rtl819x-SDK before v3.6.1 allows command injection over the web interface.
Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remot
In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds write due to a missing bounds check. This cou
D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number p
D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the system_time_timezon
D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the /SetTriggerWPS/PIN
The web server of Hirschmann BAT-C2 before 09.13.01.00R04 allows authenticated command injection. This allows an authent
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated wi
On all versions of 16.1.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x of F5 BIG-IP Advanced WAF, ASM, and ASM, and F5 BI
In all versions of BIG-IP, when running in Appliance mode, an authenticated user assigned the Administrator role may be
go-getter up to 1.5.11 and 2.0.2 allowed arbitrary host access via go-getter path traversal, symlink processing, and com
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions < V3.3.46), SIMATIC CP 1243-1 (All versions <
NuProcess is an external process execution implementation for Java. In all the versions of NuProcess where it forks proc
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below do not sanitize user input resulting in pre-auth remote code exe
totolink EX300_v2 V4.0.3c.140_B20210429 was discovered to contain a command injection vulnerability via the component pr
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of Special Eleme
Dell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A loca
The tinygltf library uses the C library function wordexp() to perform file path expansion on untrusted paths that are pr
pipenv is a Python development workflow tool. Starting with version 2018.10.9 and prior to version 2022.1.8, a flaw in p
Frequently Asked Questions
What is CWE-77?
CWE-77 (Improper Neutralization of Special Elements used in a Command (Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-77?
There are 4,365 CVE records associated with CWE-77 in our database. Of these, 1041 are critical severity, 1473 are high severity, and 1080 are medium severity.
How can I protect against CWE-77 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-77 using AI-powered security agents.
Detect CWE-77 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in a command (command injection) vulnerabilities across your infrastructure.
Get Started