CWE-78
MITRE ↗Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)
The unified WEBUI application of the ONT/Beacon device contains an input handling flaw that allows authenticated users t
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(web modules) and Archer AXE75 v1.0 allows adjacent
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) and OpenVPN of AXE75 v1 allows an adjace
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) allows adjacent authenticated attack
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(web modules) allows adjacent authenticated attack
An OS Command Injection vulnerability in TP-Link Archer BE230 v1.2(vpn modules) allows adjacent authenticated attack
TOTOLink X5000R v9.1.0cu_2415_B20250515 contains an OS command injection vulnerability in the setIptvCfg handler of the
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attack
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacke
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attac
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacke
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attack
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated atta
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker
An OS command injection vulnerability exists in XWEB Pro version 1.12.1 and prior, enabling an authenticated attacker t
Improper input handling in the administration web interface on TP-Link Deco BE25 v1.0 allows crafted input to be execute
A command injection vulnerability was identified in the web module of Archer AXE75 v1.6/v1.0 router. An authenticated a
A flaw was found in Foreman. A remote attacker could exploit a command injection vulnerability in Foreman's WebSocket pr
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special eleme
An OS command injection vulnerability in the OpenVPN module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent
An OS command injection vulnerability in the dnsmasq module of TP-Link Archer AX53 v1.0 allows an authenticated adjacent
An issue was discovered in OpenStack ironic-python-agent 1.0.0 through 11.5.0. Ironic Python Agent (IPA) sometimes execu
A flaw was found in Cockpit. This vulnerability allows a remote attacker to achieve arbitrary command execution on the h
Improper neutralization of special elements used in an os command ('os command injection') in Microsoft Office SharePoin
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before
Warp is an agentic development environment. From 0.2025.08.06.08.12.stable_00 until 0.2026.05.06.15.42.stable_01, Warp c
Dell Dell Container Storage Modules, version(s) csi-powerstore v2.16.0, csi-unity v2.16.0, csi-powerflex v2.16.0, csi-po
An OS command injection vulnerability exists in the VPN module of TP-Link AXE75 V1 routers. This vulnerability allows an
Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) vulnerability in livebook-dev l
rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to v
Synk Sweater Comb before 3.8.8 contains a command injection vulnerability that allows an attacker who controls the .verv
melange allows users to build apk packages using declarative pipelines. From version 0.3.0 to before 0.40.3, an attacker
Qubes OS before qubes-core-dom0-linux 4.3.22 allows OS command injection during a qvm-copy-to-vm call from dom0 to an at
Processing specially crafted workspace folder names could allow for arbitrary command injection in the Kiro GitLab Merge
NVIDIA NSIGHT Graphics for Linux contains a vulnerability where an attacker could cause command injection. A successful
mcp-server-siri-shortcuts shortcutName Command Injection Privilege Escalation Vulnerability. This vulnerability allows l
An OS command injection vulnerability in the com.sprd.engineermode component in Doogee Note59, Note59 Pro, and Note59 Pr
NVIDIA runx contains a vulnerability where an attacker could cause a code injection. A successful exploit of this vulner
Frequently Asked Questions
What is CWE-78?
CWE-78 (Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-78?
There are 7,691 CVE records associated with CWE-78 in our database. Of these, 1941 are critical severity, 3146 are high severity, and 963 are medium severity.
How can I protect against CWE-78 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-78 using AI-powered security agents.
Detect CWE-78 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in an os command (os command injection) vulnerabilities across your infrastructure.
Get Started