CWE-78
MITRE ↗Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)
An issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices. A Comm
There is an OS Command Injection in Nexus Repository Manager <= 2.14.14 (bypass CVE-2019-5475) that could allow an attac
An issue was discovered in Xorux Lpar2RRD 6.11 and Stor2RRD 2.61, as distributed in Xorux 2.41. They do not correctly ve
The Strapi framework before 3.0.0-beta.17.8 is vulnerable to Remote Code Execution in the Install and Uninstall Plugin c
BN-SDWBP3 firmware version 1.0.9 and earlier allows attacker with administrator rights on the same network segment to ex
An issue was discovered in Xen through 4.12.x allowing attackers to gain host OS privileges via DMA in a situation where
The Citrix Receiver wrapper function does not safely handle user supplied input, which may be leveraged by an attacker t
On TCL Alcatel Cingular Flip 2 B9HUAH1 devices, there is an engineering application named omamock that is vulnerable to
If supportutils before version 3.1-5.7.1 is run with -v to perform rpm verification and the attacker manages to manipula
A vulnerability in the CLI of Cisco Aironet Series Access Points (APs) could allow an authenticated, local attacker to g
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker
A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker t
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, l
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker with administrator crede
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, l
A vulnerability in the CLI configuration shell of Cisco Meeting Server could allow an authenticated, local attacker to i
A vulnerability in Cisco Remote PHY Device Software could allow an authenticated, local attacker to execute commands on
A vulnerability in a Virtualization Manager (VMAN) related CLI command of Cisco IOS XE Software could allow an authentic
A vulnerability in a CLI command related to the virtualization manager (VMAN) in Cisco IOS XR Software for Cisco ASR 900
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, loca
A vulnerability in the CLI of Cisco Unity Express could allow an authenticated, local attacker to inject arbitrary comma
A vulnerability in Cisco DNA Spaces: Connector could allow an authenticated, local attacker to elevate privileges and ex
A vulnerability in Cisco DNA Spaces: Connector could allow an authenticated, local attacker to perform a command injecti
In Apache SpamAssassin before 3.4.3, nefarious CF files can be configured to run system commands without any output or e
DBA-1510P firmware 1.70b009 and earlier allows authenticated attackers to execute arbitrary OS commands via Command Line
In yast2-printer up to and including version 4.0.2 the SMB printer settings don't escape characters in passwords properl
Grandstream GWN7000 before 1.0.6.32 and GWN7610 before 1.0.8.18 devices allow remote authenticated users to discover pas
A vulnerability in the Server Utilities of Cisco Integrated Management Controller (IMC) could allow an authenticated, re
Improper Neutralization of Special Elements used in a Command ('Command Injection') in ePO extension in McAfee Data Loss
In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only auth
Dell EMC RecoverPoint versions prior to 5.1.3 and RecoverPoint for VMs versions prior to 5.2.0.2 contain an OS command i
A vulnerability in the Remote Package Manager (RPM) subsystem of Cisco NX-OS Software could allow an authenticated, loca
A vulnerability in the CLI of Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker
A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker
A vulnerability in the local management CLI implementation for specific commands on the Cisco UCS B-Series Blade Servers
An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is an ability to escape t
Command manipulation in LabKey Server Community Edition before 18.3.0-61806.763 allows an authenticated remote attacker
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att
Multiple vulnerabilities in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, local att
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary com
An exploitable OS Command Injection vulnerability exists in the Telnet, SSH, and console login functionality of Moxa AWK
A command injection vulnerability in the apex-publish-static-files npm module version <2.0.1 which allows arbitrary shel
A sandbox escape issue was discovered in VyOS 1.1.8. It provides a restricted management shell for operator users to adm
Frequently Asked Questions
What is CWE-78?
CWE-78 (Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-78?
There are 7,691 CVE records associated with CWE-78 in our database. Of these, 1941 are critical severity, 3146 are high severity, and 963 are medium severity.
How can I protect against CWE-78 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-78 using AI-powered security agents.
Detect CWE-78 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in an os command (os command injection) vulnerabilities across your infrastructure.
Get Started