CWE-78
MITRE ↗Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)
The NTP Server configuration function of the IP camera device is not verified with special parameters. Remote attackers
IBM Security Guardium 11.2 could allow a remote authenticated attacker to execute arbitrary commands on the system by se
The parameters $cache_path, $wp_cache_debug_ip, $wp_super_cache_front_page_text, $cache_scheduled_time, $cached_direct_p
If exploited, this command injection vulnerability could allow remote attackers to run arbitrary commands. Roon Labs has
In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to
A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to
An improper neutralization of special elements used in an OS Command vulnerability in the administrative interface of Fo
A code execution vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A special
The web console for Mimosa B5, B5c, and C5x firmware through 2.8.0.2 allows authenticated command injection in the Throu
A remote execution of arbitrary commands vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2). The affected application incorrectly neutral
A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow command injection by setting a spec
The Cron job tab in EasyCorp ZenTao 12.5.3 allows remote attackers (who have admin access) to execute arbitrary code by
Remote code execution in the modules component in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u
Rittal CMC PU III Web management Version affected: V3.11.00_2. Version fixed: V3.17.10 is affected by a remote code exec
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability
A command injection vulnerability has been reported to affect QNAP device running QVR. If exploited, this vulnerability
The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vu
A remote arbitrary command execution vulnerability was discovered in HPE Aruba Instant (IAP) version(s): 6.4.x.x: 6.4.4.
A remote arbitrary command execution vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 6
A remote arbitrary command execution vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 6
Mobile Access Portal Native Applications who's path is defined by the administrator with environment variables may run a
Vulnerability in the product Docsis 3.0 UBC1319BA00 Router supported affected version 1319010201r009. The vulnerability
A command injection vulnerability was reported in the Integrated Management Module (IMM) of legacy IBM System x 3550 M3
A crafted configuration packet sent by an authenticated administrative user can be used to execute arbitrary commands in
A server side remote code execution vulnerability was found in Foreman project. A authenticated attacker could use Sendm
The System Information Library for Node.JS (npm package "systeminformation") is an open source collection of functions t
In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code
Rostelecom CS-C2SHW 5.0.082.1 is affected by: Bash command injection. The camera reads configuration from QR code (inclu
LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified
LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified
ELECOM WRC-300FEBK-S allows an attacker with administrator rights to execute arbitrary OS commands via unspecified vecto
PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.2 there is a CSV Inject
A vulnerability in the ROM Monitor (ROMMON) of Cisco IOS XE Software for Cisco Catalyst IE3200, IE3300, and IE3400 Rugge
RFNTPS firmware versions System_01000004 and earlier, and Web_01000004 and earlier allow an attacker on the same network
Proxyee-Down is open source proxy software. An attacker being able to provide an extension script (eg: through a MiTM at
A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privi
Dell NetWorker, versions 18.x and 19.x contain a Path traversal vulnerability. A NetWorker server user with remote acces
Dell NetWorker, versions 18.x and 19.x contain an Information disclosure vulnerability. A NetWorker server user with rem
ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-ad
ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-ad
A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware
Frequently Asked Questions
What is CWE-78?
CWE-78 (Improper Neutralization of Special Elements used in an OS Command (OS Command Injection)) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-78?
There are 7,691 CVE records associated with CWE-78 in our database. Of these, 1941 are critical severity, 3146 are high severity, and 963 are medium severity.
How can I protect against CWE-78 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-78 using AI-powered security agents.
Detect CWE-78 Vulnerabilities
CyberStrike's AI agents automatically detect improper neutralization of special elements used in an os command (os command injection) vulnerabilities across your infrastructure.
Get Started