All CVEs — page 38 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw allows for arbitrary OS command execution due to unquoted string concatenation in the javaOpts parameter, enabling attackers to inject shell commands.
The flaw allows an authenticated operator-level user to inject a Keepalived configuration, potentially enabling command execution as root, which can lead to full system compromise.
This flaw allows PowerShell command injection in Windows DNS SPF/TXT record push, leading to remote code execution. Attackers can exploit this to gain full control over affected ManageEngine DDI Central instances.
This vulnerability allows remote attackers to execute arbitrary code by exploiting a stack-based buffer overflow in the copy_msg_element function of the devdiscover Service in FAST FAC1900R 20190827_2.0.2, posing a critical risk.
This vulnerability in FAST FAC1200R 5.0_20201119_1.0.2 allows a stack-based buffer overflow through the MmtAtePrase function, enabling remote code execution.
This vulnerability in FAST FAC1200R 5.0_20201119_1.0.2 allows remote attackers to exploit a stack-based buffer overflow in the devdiscover Service, leading to potential remote code execution.