CWE-77
MITRE ↗Improper Neutralization of Special Elements used in a Command (Command Injection)
Trend Micro Apex One could be exploited by an attacker utilizing a command injection vulnerability to extract files from
Aruba Instant 4.x prior to 6.4.4.8-4.2.4.12, 6.5.x prior to 6.5.4.11, 8.3.x prior to 8.3.0.6, and 8.4.x prior to 8.4.0.1
A command injection exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to inject commands
Insufficient data validation in crosh could lead to a command injection under chronos privileges in Networking in Google
An attacker could inject commands to launch programs and create, write, and read files on CX-Supervisor (Versions 3.42 a
An issue was discovered in CMS Made Simple 2.2.8. It is possible, with an administrator account, to achieve command inje
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.5, 13.0.0-13.1.1.4, 12.1.0-12.1.4.1, and 11.5.1-11.6.4, an undisclosed iControl
Command Injection in EdgeMAX EdgeSwitch prior to 1.8.2 allow an Admin user to execute commands as root.
There is an OS Command Injection in Nexus Repository Manager <= 2.14.14 (bypass CVE-2019-5475) that could allow an attac
The Untangle NG firewall 14.2.0 is vulnerable to an authenticated command injection when logged in as an admin user.
NETGEAR Insight Cloud with firmware before Insight 5.6 allows remote authenticated users to achieve command injection.
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software and Cisco FXOS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with valid administrator
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker
A vulnerability in the CLI configuration shell of Cisco Meeting Server could allow an authenticated, local attacker to i
A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software could allow an authentic
In the Bootloader, there is a possible kernel command injection due to missing command sanitization. This could lead to
A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute a
cPanel before 11.54.0.4 allows certain file-chmod operations in scripts/secureit (SEC-82).
Xiaomi Stock Browser 10.2.4.g on Xiaomi Redmi Note 5 Pro devices and other Redmi Android phones allows content provider
cPanel before 64.0.21 allows demo accounts to execute Cpanel::SPFUI API commands (SEC-246).
An attacker could inject commands to delete files and/or delete the contents of a file on CX-Supervisor (Versions 3.42 a
Command manipulation in LabKey Server Community Edition before 18.3.0-61806.763 allows an authenticated remote attacker
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shel
An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a
A Command Injection issue was discovered in Nortek Linear eMerge E3 series Versions V0.32-07e and prior. A remote attack
Gitlab Community Edition version 10.2.4 is vulnerable to a lack of input validation in the GitlabProjectsImportService r
Gitlab Community Edition version 10.3 is vulnerable to a lack of input validation in the system_hook_push queue through
The EZPZ One Click Backup (ezpz-one-click-backup) plugin 12.03.10 and earlier for WordPress allows remote attackers to e
IBM Rational AppScan Source 8.0 through 8.0.0.2 and 8.5 through 8.5.0.1 and Security AppScan Source 8.6 through 8.6.0.2,
The remote administration interface in D-Link DIR-815 devices with firmware before 2.03.B02 allows remote attackers to e
The WordPress Flash Uploader plugin before 3.1.3 for WordPress allows remote attackers to execute arbitrary commands via
The pdfinfojs NPM module versions <= 0.3.6 has a command injection vulnerability that allows an attacker to execute arbi
dns-sync is a sync/blocking dns resolver. If untrusted user input is allowed into the resolve() method then command inje
Command injection vulnerability in LDAP Server in QNAP QTS 4.2.6 build 20171208, QTS 4.3.3 build 20180402, QTS 4.3.4 bui
In Schneider Electric U.motion Builder software versions prior to v1.3.4, a remote command injection allows authenticati
A command injection vulnerability exists in apply.cgi on the ASUS RP-AC52 access point, firmware version 1.0.1.1s and po
Frequently Asked Questions
What is CWE-77?
CWE-77 (Improper Neutralization of Special Elements used in a Command (Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-77?
There are 4,365 CVE records associated with CWE-77 in our database. Of these, 1041 are critical severity, 1473 are high severity, and 1080 are medium severity.
How can I protect against CWE-77 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-77 using AI-powered security agents.
Detect CWE-77 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in a command (command injection) vulnerabilities across your infrastructure.
Get Started