CWE-77
MITRE ↗Improper Neutralization of Special Elements used in a Command (Command Injection)
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPas
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPas
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPas
An issue was discovered in Nagios XI 5.8.5. In the Manage Dashlets section of the Admin panel, an administrator can uplo
NETGEAR D6220 devices before 1.0.0.76 are affected by command injection by an authenticated user.
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of A
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R602
Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Ba
Backstage is an open platform for building developer portals. In versions of Backstage's Techdocs Plugin (`@backstage/pl
In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation
In netdiag, there is a possible command injection due to improper input validation. This could lead to local escalation
In mobile_log_d, there is a possible command injection due to a missing bounds check. This could lead to local escalatio
In mobile_log_d, there is a possible command injection due to improper input validation. This could lead to local escala
A vulnerability in the upgrade process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat De
A command injection vulnerability has been reported to affect certain versions of Malware Remover. If exploited, this vu
A shell injection flaw was found in pglogical in versions before 2.3.4 and before 3.6.26. An attacker with CREATEDB priv
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary com
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an authenticated, local
NETGEAR R8000 devices before 1.0.4.76 are affected by command injection by an authenticated user.
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6400 before 1.0.1.52,
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76,
A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remo
Multiple vulnerabilities in Cisco DNA Spaces Connector could allow an authenticated, remote attacker to perform a comman
A path traversal vulnerability was identified in GitHub Enterprise Server that could be exploited when building a GitHub
Multiple vulnerabilities in the web UI and API endpoints of Cisco Application Policy Infrastructure Controller (APIC) or
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6250 before 1.0.4.36,
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPas
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPas
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.60,
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.58,
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6400 before 1.0.1.50,
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr
Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS
In Alpine before 2.25, untagged responses from an IMAP server are accepted before STARTTLS.
In s/qmail through 4.0.07, an active MitM can inject arbitrary plaintext commands into a STARTTLS encrypted session betw
systeminformation is an npm package that provides system and OS information library for node.js. In systeminformation be
Combodo iTop is an open source, web based IT Service Management tool. In versions prior to 2.7.4, there is a command inj
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrar
Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of s
In KDE KMail 19.12.3 (aka 5.13.3), the SMTP STARTTLS option is not honored (and cleartext messages are sent) unless "Ser
The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series
Frequently Asked Questions
What is CWE-77?
CWE-77 (Improper Neutralization of Special Elements used in a Command (Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-77?
There are 4,365 CVE records associated with CWE-77 in our database. Of these, 1041 are critical severity, 1473 are high severity, and 1080 are medium severity.
How can I protect against CWE-77 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-77 using AI-powered security agents.
Detect CWE-77 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in a command (command injection) vulnerabilities across your infrastructure.
Get Started