CWE-94— Improper Control of Generation of Code (Code Injection)
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.— MITRE CWE catalog
7,123 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-94page 43 of 143
- CVE-2017-20064MEDIUMCVSS 6.3EG 6.32022-06-20
A vulnerability was found in Elefant CMS 1.3.12-RC. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /designer/add/layout. The manipulation leads to code injection. The attack can be …
- CVE-2017-20086HIGHCVSS 6.3EG 7.52022-06-23
A vulnerability, which was classified as critical, was found in VaultPress Plugin 1.8.4. This affects an unknown part. The manipulation leads to code injection. It is possible to initiate the attack remotely.
- CVE-2017-20095CRITICALCVSS 6.3EG 9.82022-06-24
A vulnerability classified as critical was found in Simple Ads Manager Plugin. This vulnerability affects unknown code. The manipulation leads to code injection. The attack can be initiated remotely.
- CVE-2017-20099CRITICALCVSS 7.3EG 9.82022-06-27
A vulnerability was found in Analytics Stats Counter Statistics Plugin 1.2.2.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The attack may be initiated remotely.
- CVE-2017-20251CRITICALCVSS 9.8EG 9.82026-06-09
WordPress Insert PHP plugin versions before 3.3.1 contain a PHP code injection vulnerability that allows unauthenticated attackers to execute arbitrary PHP code by injecting malicious shortcodes through the WordPress REST API. Attackers ca…
- CVE-2017-2809HIGHCVSS 7.8EG 7.52017-09-14
An exploitable vulnerability exists in the yaml loading functionality of ansible-vault before 1.0.5. A specially crafted vault can execute arbitrary python commands resulting in command execution. An attacker can insert python into the vau…
- CVE-2017-2968CRITICALCVSS 9.1EG 9.12017-02-15
Adobe Campaign versions 16.4 Build 8724 and earlier have a code injection vulnerability.
- CVE-2017-3753MEDIUMCVSS 6.8EG 6.82017-08-10
A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical acce…
- CVE-2017-3897CRITICALCVSS 9.8EG 9.82017-09-01
A Code Injection vulnerability in the non-certificate-based authentication mechanism in McAfee Live Safe versions prior to 16.0.3 and McAfee Security Scan Plus (MSS+) versions prior to 3.11.599.3 allows network attackers to perform a malic…
- CVE-2017-3907CRITICALCVSS 5.4EG 9.82018-06-13
Code Injection vulnerability in the ePolicy Orchestrator (ePO) extension in McAfee Threat Intelligence Exchange (TIE) Server 2.1.0 and earlier allows remote attackers to execute arbitrary HTML code to be reflected in the response web page …
- CVE-2017-3967MEDIUMCVSS 6.1EG 6.12018-04-04
Target influence via framing vulnerability in the web interface in McAfee Network Security Management (NSM) before 8.2.7.42.2 allows remote attackers to inject arbitrary web script or HTML via application pages inability to break out of 3r…
- CVE-2017-4964HIGHCVSS 8.8EG 8.82017-04-06
Cloud Foundry Foundation BOSH Azure CPI v22 could potentially allow a maliciously crafted stemcell to execute arbitrary code on VMs created by the director, aka a "CPI code injection vulnerability."
- CVE-2017-5543CRITICALCVSS 9.8EG 9.82017-01-20
includes/classes/ia.core.users.php in Subrion CMS 4.0.5 allows remote attackers to conduct PHP Object Injection attacks via crafted serialized data in a salt cookie in a login request.
- CVE-2017-6186MEDIUMCVSS 6.7EG 6.72017-03-21
Code injection vulnerability in Bitdefender Total Security 12.0 (and earlier), Internet Security 12.0 (and earlier), and Antivirus Plus 12.0 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code…
- CVE-2017-6325MEDIUMCVSS 6.6EG 6.62017-06-26
The Symantec Messaging Gateway can encounter a file inclusion vulnerability, which is a type of vulnerability that is most commonly found to affect web applications that rely on a scripting run time. This issue is caused when an applicatio…
- CVE-2017-6455HIGHCVSS 7.0EG 7.02017-03-27
NTP before 4.2.8p10 and 4.3.x before 4.3.94, when using PPSAPI, allows local users to gain privileges via a DLL in the PPSAPI_DLLS environment variable.
- CVE-2017-6782MEDIUMCVSS 5.4EG 5.42017-08-17
A vulnerability in the administrative web interface of Cisco Prime Infrastructure could allow an authenticated, remote attacker to modify a page in the web interface of the affected application. The vulnerability is due to improper sanitiz…
- CVE-2017-7321CRITICALCVSS 9.8EG 9.82017-03-30
setup/controllers/welcome.php in MODX Revolution 2.5.4-pl and earlier allows remote attackers to execute arbitrary PHP code via the config_key parameter to the setup/index.php?action=welcome URI.
- CVE-2017-7324CRITICALCVSS 9.8EG 9.82017-03-30
setup/templates/findcore.php in MODX Revolution 2.5.4-pl and earlier allows remote attackers to execute arbitrary PHP code via the core_path parameter.
- CVE-2017-7402CRITICALCVSS 9.8EG 9.82017-04-03
Pixie 1.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via the POST data in an admin/index.php?s=publish&x=filemanager request for a filename with a double extension, such as a .jpg.php file with Content-Typ…
- CVE-2017-7411HIGHCVSS 8.8EG 8.92017-10-30
An issue was discovered in Enalean Tuleap 9.6 and prior versions. The vulnerability exists because the User::getRecentElements() method is using the unserialize() function with a preference value that can be arbitrarily manipulated by mali…
- CVE-2017-7465CRITICALCVSS 9.0EG 9.82018-06-27
It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing…
- CVE-2017-7494CRITICALCVSS 9.8EG 9.8⚠ KEV2017-05-30
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute i…
- CVE-2017-7570HIGHCVSS 8.8EG 8.82017-04-07
PivotX 2.3.11 allows remote authenticated Advanced users to execute arbitrary PHP code by performing an upload with a safe file extension (such as .jpg) and then invoking the duplicate function to change to the .php extension.
- CVE-2017-7625CRITICALCVSS 9.8EG 9.82017-04-10
In Fiyo CMS 2.x through 2.0.7, attackers may upload a webshell via the content parameter to "/dapur/apps/app_theme/libs/save_file.php" and then execute code.
- CVE-2017-7691CRITICALCVSS 9.8EG 9.82017-04-11
A code injection vulnerability exists in SAP TREX / Business Warehouse Accelerator (BWA). The vendor response is SAP Security Note 2419592.
- CVE-2017-7694HIGHCVSS 8.8EG 8.82017-04-11
Remote Code Execution vulnerability in symphony/content/content.blueprintsdatasources.php in Symphony CMS through 2.6.11 allows remote attackers to execute code and get a webshell from the back-end. The attacker must be authenticated and e…
- CVE-2017-7798HIGHCVSS 8.8EG 8.82018-06-11
The Developer Tools feature suffers from a XUL injection vulnerability due to improper sanitization of the web page source code. In the worst case, this could allow arbitrary code execution when opening a malicious page with the style edit…
- CVE-2017-7911HIGHCVSS 8.8EG 8.82017-05-06
A Code Injection issue was discovered in CyberVision Kaa IoT Platform, Version 0.7.4. An insufficient-encapsulation vulnerability has been identified, which may allow remote code execution.
- CVE-2017-8284HIGHCVSS 7.0EG 7.02017-04-26
The disas_insn function in target/i386/translate.c in QEMU before 2.9.0, when TCG mode without hardware acceleration is used, does not limit the instruction size, which allows local users to gain privileges by creating a modified basic blo…
- CVE-2017-8402HIGHCVSS 8.8EG 8.82017-05-31
PivotX 2.3.11 allows remote authenticated users to execute arbitrary PHP code via vectors involving an upload of a .htaccess file.
- CVE-2017-8759CRITICALCVSS 7.8EG 9.0⚠ KEV2017-09-13
Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allow an attacker to execute code remotely via a malicious document or application, aka ".NET Framework Remote Code Execution Vulnerability."
- CVE-2017-8912HIGHCVSS 7.2EG 7.22017-05-12
CMS Made Simple (CMSMS) 2.1.6 allows remote authenticated administrators to execute arbitrary PHP code via the code parameter to admin/editusertag.php, related to the CreateTagFunction and CallUserTag functions. NOTE: the vendor reportedly…
- CVE-2017-9442HIGHCVSS 8.8EG 8.82017-06-05
BigTree CMS through 4.2.18 allows remote authenticated users to execute arbitrary code by uploading a crafted package containing a PHP web shell, related to extraction of a ZIP archive to filename patterns such as cache/package/xxx/yyy.php…
- CVE-2017-9771CRITICALCVSS 9.8EG 9.82017-06-21
install\save.php in WebsiteBaker v2.10.0 allows remote attackers to execute arbitrary PHP code via the database_username, database_host, or database_password parameter.
- CVE-2017-9774HIGHCVSS 8.8EG 8.82017-06-21
Remote Code Execution was found in Horde_Image 2.x before 2.5.0 via a crafted GET request. Exploitation requires authentication.
- CVE-2017-9807CRITICALCVSS 9.8EG 9.82017-06-22
An issue was discovered in the OpenWebif plugin through 1.2.4 for E2 open devices. The saveConfig function of "plugin/controllers/models/config.py" performs an eval() call on the contents of the "key" HTTP GET parameter. This allows an una…
- CVE-2017-9822CRITICALCVSS 8.8EG 9.0⚠ KEV2017-07-20
DNN (aka DotNetNuke) before 9.1.1 has Remote Code Execution via a cookie, aka "2017-08 (Critical) Possible remote code execution on DNN sites."
- CVE-2017-9841CRITICALCVSS 9.8EG 9.8⚠ KEV2017-06-27
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers to execute arbitrary PHP code via HTTP POST data beginning with a "<?php " substring, as demonstrated by an attack on a site with an exposed /ven…
- CVE-2018-0007CRITICALCVSS 9.8EG 9.82018-01-10
An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may be able to cause a Junos device to enter an improper boundary check condition allowing a …
- CVE-2018-0461HIGHCVSS 6.5EG 8.82019-01-10
A vulnerability in the Cisco IP Phone 8800 Series Software could allow an unauthenticated, remote attacker to conduct an arbitrary script injection attack on an affected device. The vulnerability exists because the software running on an a…
- CVE-2018-0674HIGHCVSS 7.8EG 7.82018-09-04
AttacheCase ver.2.8.4.0 and earlier allows an arbitrary script execution via unspecified vectors.
- CVE-2018-0675HIGHCVSS 7.8EG 7.82018-09-04
AttacheCase ver.3.3.0.0 and earlier allows an arbitrary script execution via unspecified vectors.
- CVE-2018-1000070HIGHCVSS 8.8EG 8.82018-03-13
Bitmessage PyBitmessage version v0.6.2 (and introduced in or after commit 8ce72d8d2d25973b7064b1cf76a6b0b3d62f0ba0) contains a Eval injection vulnerability in main program, file src/messagetypes/__init__.py function constructObject that ca…
- CVE-2018-1000881CRITICALCVSS 9.8EG 9.82018-12-20
Traccar Traccar Server version 4.0 and earlier contains a CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability in ComputedAttributesHandler.java that can result in Remote Command Execution. This attack appear to …
- CVE-2018-10086HIGHCVSS 7.2EG 7.22018-04-13
CMS Made Simple (CMSMS) through 2.2.7 contains an arbitrary code execution vulnerability in the admin dashboard because the implementation uses "eval('function testfunction'.rand()" and it is possible to bypass certain restrictions on thes…
- CVE-2018-10133CRITICALCVSS 9.8EG 9.82018-04-16
PbootCMS v0.9.8 allows PHP code injection via an IF label in index.php/About/6.html or admin.php/Site/index.html, related to the parserIfLabel function in \apps\home\controller\ParserController.php.
- CVE-2018-10235HIGHCVSS 7.2EG 7.22018-04-19
POSCMS 3.2.10 allows remote attackers to execute arbitrary PHP code via the diy\module\member\controllers\admin\Setting.php 'index' function because an attacker can control the value of $cache['setting']['ucssocfg'] in diy\module\member\mo…
- CVE-2018-10236HIGHCVSS 7.2EG 7.22018-04-19
POSCMS 3.2.18 allows remote attackers to execute arbitrary PHP code via the diy\dayrui\controllers\admin\Syscontroller.php 'add' function because an attacker can control the value of $data['name'] with no restrictions, and this value is wr…
- CVE-2018-1028HIGHCVSS 8.8EG 8.82018-04-12
A remote code execution vulnerability exists when the Office graphics component improperly handles specially crafted embedded fonts, aka "Microsoft Office Graphics Remote Code Execution Vulnerability." This affects Word, Microsoft Office, …
Map vulnerabilities like CWE-94 to your infrastructure
EchelonGraph correlates every CVE — across CWE-94 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →