cwe-78
Safeguard articles tagged "cwe-78" — guides, analysis, and best practices for software supply chain and application security.
100 articles
CVE-2020-11978: Apache Airflow Command Injection
CVE-2020-11978 affects Apache Airflow and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-21315: System Information Library for Node.JS Command Injection
CVE-2021-21315 affects Npm package System Information Library for Node.JS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-25298: Nagios XI OS Command Injection
CVE-2021-25298 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-25297: Nagios XI OS Command Injection
CVE-2021-25297 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2021-25296: Nagios XI OS Command Injection
CVE-2021-25296 affects Nagios Nagios XI and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-18.
CVE-2014-7169: GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability
CVE-2014-7169 affects GNU Bourne-Again Shell (Bash) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-28.
CVE-2014-6271: GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability
CVE-2014-6271 affects GNU Bourne-Again Shell (Bash) and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-28.
CVE-2021-27561: Yealink Device Management Server-Side Request Forgery (SSRF) Vulnerability
CVE-2021-27561 affects Yealink Device Management and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-4006: Multiple VMware Products Command Injection Vulnerability
CVE-2020-4006 affects VMware Multiple Products and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2018-14558: Tenda AC7, AC9, and AC10 Routers Command Injection Vulnerability
CVE-2018-14558 affects Tenda AC7, AC9, and AC10 Routers and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-10987: Tenda AC1900 Router AC15 Model Remote Code Execution Vulnerability
CVE-2020-10987 affects Tenda AC1900 Router AC15 Model and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-16846: SaltStack Salt Shell Injection Vulnerability
CVE-2020-16846 affects SaltStack Salt and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.