|
198011
|
9.8 |
CRITICAL
Network
|
apiconnect-cli-plugins_project
|
apiconnect-cli-plugins
|
apiconnect-cli-plugins through 6.0.1 is vulnerable to Command Injection.It allows execution of arbitrary commands via the pluginUri argument.
|
CWE-78
OS Command
|
CVE-2020-7633
|
2024-11-21 14:37 |
2020-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198012
|
9.8 |
CRITICAL
Network
|
node-mpv_project
|
node-mpv
|
node-mpv through 1.4.3 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.
|
CWE-78
OS Command
|
CVE-2020-7632
|
2024-11-21 14:37 |
2020-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198013
|
9.8 |
CRITICAL
Network
|
diskusage-ng_project
|
diskusage-ng
|
diskusage-ng through 0.2.4 is vulnerable to Command Injection.It allows execution of arbitrary commands via the path argument.
|
CWE-78
OS Command
|
CVE-2020-7631
|
2024-11-21 14:37 |
2020-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198014
|
9.8 |
CRITICAL
Network
|
git-add-remote_project
|
git-add-remote
|
git-add-remote through 1.0.0 is vulnerable to Command Injection. It allows execution of arbitrary commands via the name argument.
|
CWE-78
OS Command
|
CVE-2020-7630
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198015
|
9.8 |
CRITICAL
Network
|
install-package_project
|
install-package
|
install-package through 0.4.0 is vulnerable to Command Injection. It allows execution of arbitrary commands via the options argument.
|
CWE-78
OS Command
|
CVE-2020-7629
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198016
|
9.8 |
CRITICAL
Network
|
install-package_project umount_project
|
install-package umount
|
umount through 1.1.6 is vulnerable to Command Injection. The argument device can be controlled by users without any sanitization.
|
CWE-78
OS Command
|
CVE-2020-7628
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198017
|
9.8 |
CRITICAL
Network
|
node-key-sender_project
|
node-key-sender
|
node-key-sender through 1.0.11 is vulnerable to Command Injection. It allows execution of arbitrary commands via the 'arrParams' argument in the 'execute()' function.
|
CWE-78
OS Command
|
CVE-2020-7627
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198018
|
9.8 |
CRITICAL
Network
|
karma-mojo_project
|
karma-mojo
|
karma-mojo through 1.0.1 is vulnerable to Command Injection. It allows execution of arbitrary commands via the config argument.
|
CWE-78
OS Command
|
CVE-2020-7626
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198019
|
9.8 |
CRITICAL
Network
|
op-browser_project
|
op-browser
|
op-browser through 1.0.6 is vulnerable to Command Injection. It allows execution of arbitrary commands via the url function.
|
CWE-78
OS Command
|
CVE-2020-7625
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198020
|
9.8 |
CRITICAL
Network
|
effect_project
|
effect
|
effect through 1.0.4 is vulnerable to Command Injection. It allows execution of arbitrary command via the options argument.
|
CWE-78
OS Command
|
CVE-2020-7624
|
2024-11-21 14:37 |
2020-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|