CWE-94— Improper Control of Generation of Code (Code Injection)
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.— MITRE CWE catalog
7,124 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-94page 66 of 143
- CVE-2023-24078HIGHCVSS 8.8EG 8.92023-02-17
Real Time Logic FuguHub v8.1 and earlier was discovered to contain a remote code execution (RCE) vulnerability via the component /FuguHub/cmsdocs/.
- CVE-2023-24107CRITICALCVSS 9.8EG 9.82023-02-22
hour_of_code_python_2015 commit 520929797b9ca43bb818b2e8f963fb2025459fa3 was discovered to contain a code execution backdoor via the request package (requirements.txt). This vulnerability allows attackers to access sensitive user informati…
- CVE-2023-24114CRITICALCVSS 9.8EG 9.82023-02-22
typecho 1.1/17.10.30 was discovered to contain a remote code execution (RCE) vulnerability via install.php.
- CVE-2023-24333HIGHCVSS 8.8EG 8.82024-02-21
A stack overflow vulnerability in Tenda AC21 with firmware version US_AC21V1.0re_V16.03.08.15_cn_TDC01 allows attackers to run arbitrary commands via crafted POST request to /goform/openSchedWifi.
- CVE-2023-24492CRITICALCVSS 9.6EG 9.62023-07-11
A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an attacker to remotely execute code if a victim user opens an attacker-crafted link and accepts further prompts.
- CVE-2023-24538CRITICALCVSS 9.8EG 9.82023-04-06
Templates do not properly consider backticks (`) as Javascript string delimiters, and do not escape them as expected. Backticks are used, since ES6, for JS template literals. If a template contains a Go template action within a Javascript …
- CVE-2023-24539HIGHCVSS 7.3EG 7.32023-05-11
Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection o…
- CVE-2023-24576CRITICALCVSS 7.5EG 9.82023-02-03
EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorker Client execution service (nsrexecd) irrespective of any auth used.
- CVE-2023-24676HIGHCVSS 7.2EG 7.22024-01-24
An issue found in ProcessWire 3.0.210 allows attackers to execute arbitrary code and install a reverse shell via the download_zip_url parameter when installing a new module. NOTE: this is disputed because exploitation requires that the att…
- CVE-2023-24709HIGHCVSS 7.5EG 7.92023-03-21
An issue found in Paradox Security Systems IPR512 allows attackers to cause a denial of service via the login.html and login.xml parameters.
- CVE-2023-24776CRITICALCVSS 9.8EG 9.82023-03-06
Funadmin v3.2.0 was discovered to contain a remote code execution (RCE) vulnerability via the component \controller\Addon.php.
- CVE-2023-24795CRITICALCVSS 9.8EG 9.82023-03-16
Command execution vulnerability was discovered in JHR-N916R router firmware version<=21.11.1.1483.
- CVE-2023-24835HIGHCVSS 7.2EG 7.22023-03-27
Softnext Technologies Corp.’s SPAM SQR has a vulnerability of Code Injection within its specific function. An authenticated remote attacker with administrator privilege can exploit this vulnerability to execute arbitrary system command t…
- CVE-2023-24955CRITICALCVSS 7.2EG 9.0⚠ KEV2023-05-09
Microsoft SharePoint Server Remote Code Execution Vulnerability
- CVE-2023-25054CRITICALCVSS 10.0EG 10.02023-12-29
Improper Control of Generation of Code ('Code Injection') vulnerability in David F. Carr RSVPMaker.This issue affects RSVPMaker: from n/a through 10.6.6.
- CVE-2023-25261CRITICALCVSS 9.8EG 9.82023-03-27
Certain Stimulsoft GmbH products are affected by: Remote Code Execution. This affects Stimulsoft Designer (Desktop) 2023.1.4 and Stimulsoft Designer (Web) 2023.1.3 and Stimulsoft Viewer (Web) 2023.1.3. Access to the local file system is no…
- CVE-2023-25344CRITICALCVSS 9.8EG 9.82023-03-15
An issue was discovered in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to execute arbitrary code via crafted Object.prototype anonymous function.
- CVE-2023-25539HIGHCVSS 8.4EG 8.42023-05-31
Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the appl…
- CVE-2023-25549HIGHCVSS 7.2EG 7.22023-04-18
A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that allows for remote code execution when using a parameter of the DCE network settings endpoint. Affected products: StruxureWare …
- CVE-2023-25550HIGHCVSS 7.2EG 7.22023-04-18
A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that allows remote code execution via the “hostname” parameter when maliciously crafted hostname syntax is entered. Affecte…
- CVE-2023-25657HIGHCVSS 7.5EG 7.52023-02-21
Nautobot is a Network Source of Truth and Network Automation Platform. All users of Nautobot versions earlier than 1.5.7 are impacted by a remote code execution vulnerability. Nautobot did not properly sandbox Jinja2 template rendering. In…
- CVE-2023-25717CRITICALCVSS 9.8EG 9.8⚠ KEV2023-02-13
Ruckus Wireless Admin through 10.4 allows Remote Code Execution via an unauthenticated HTTP GET Request, as demonstrated by a /forms/doLogin?login_username=admin&password=password$(curl substring.
- CVE-2023-2583CRITICALCVSS 10.0EG 10.02023-05-08
Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
- CVE-2023-25910CRITICALCVSS 10.0EG 10.02023-06-13
A vulnerability has been identified in SIMATIC PCS 7 (All versions < V9.1 SP2 UC04), SIMATIC S7-PM (All versions < V5.7 SP1 HF1), SIMATIC S7-PM (All versions < V5.7 SP2 HF1), SIMATIC STEP 7 V5 (All versions < V5.7). The affected product co…
- CVE-2023-25953CRITICALCVSS 9.8EG 9.82023-05-23
Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to the client where the affected product is installed to inject arbitrary code while processing the product execution. Sin…
- CVE-2023-26060MEDIUMCVSS 6.8EG 6.82023-04-24
An issue was discovered in Nokia NetAct before 22 FP2211. On the Working Set Manager page, users can create a Working Set with a name that has a client-side template injection payload. Input validation is missing during creation of the wor…
- CVE-2023-26107HIGHCVSS 6.9EG 7.82023-03-06
All versions of the package sketchsvg are vulnerable to Arbitrary Code Injection when invoking shell.exec without sanitization nor parametrization while concatenating the current directory as part of the command string.
- CVE-2023-26119CRITICALCVSS 9.8EG 9.82023-04-03
Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.
- CVE-2023-26145HIGHCVSS 7.4EG 7.42023-09-28
This affects versions of the package pydash before 6.0.0. A number of pydash methods such as pydash.objects.invoke() and pydash.collections.invoke_map() accept dotted paths (Deep Path Strings) to target a nested Python object, relative to …
- CVE-2023-26155HIGHCVSS 7.3EG 7.32023-10-14
All versions of the package node-qpdf are vulnerable to Command Injection such that the package-exported method encrypt() fails to sanitize its parameter input, which later flows into a sensitive command execution API. As a result, attacke…
- CVE-2023-26322HIGHCVSS 8.8EG 8.82024-08-28
A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the verification logic being bypassed, and an attacker can exploit this vulnerability to execute malicious code.
- CVE-2023-26324HIGHCVSS 8.8EG 8.82024-08-28
A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the verification logic being bypassed, and an attacker can exploit this vulnerability to execute malicious code.
- CVE-2023-26436HIGHCVSS 7.1EG 7.12023-06-20
Attackers with access to the "documentconverterws" API were able to inject serialized Java objects, that were not properly checked during deserialization. Access to this API endpoint is restricted to local networks by default. Arbitrary co…
- CVE-2023-26477CRITICALCVSS 10.0EG 10.02023-03-02
XWiki Platform is a generic wiki platform. Starting in versions 6.3-rc-1 and 6.2.4, it's possible to inject arbitrary wiki syntax including Groovy, Python and Velocity script macros via the `newThemeName` request parameter (URL parameter),…
- CVE-2023-26546HIGHCVSS 8.8EG 8.82023-05-02
European Chemicals Agency IUCLID before 6.27.6 allows remote authenticated users to execute arbitrary code via Server Side Template Injection (SSTI) with a crafted template file. The attacker must have template manager permission.
- CVE-2023-26782MEDIUMCVSS 6.5EG 6.52023-04-28
An issue discovered in mccms 2.6.1 allows remote attackers to cause a denial of service via Backend management interface ->System Configuration->Cache Configuration->Cache security characters.
- CVE-2023-26785CRITICALCVSS 9.8EG 9.82024-10-17
MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boun…
- CVE-2023-26817HIGHCVSS 8.8EG 8.82023-04-07
codefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component /controllers/api/user.php.
- CVE-2023-26877MEDIUMCVSS 6.3EG 6.32024-06-26
File upload vulnerability found in Softexpert Excellence Suite v.2.1 allows attackers to execute arbitrary code via a .php file upload to the form/efms_exec_html/file_upload_parser.php endpoint.
- CVE-2023-27650CRITICALCVSS 9.8EG 9.82023-04-10
An issue found in APUS Group Launcher v.3.10.73 and v.3.10.88 allows a remote attacker to execute arbitrary code via the FONT_FILE parameter.
- CVE-2023-27744HIGHCVSS 7.8EG 7.82023-06-02
An issue was discovered in South River Technologies TitanFTP NextGen server that allows for a vertical privilege escalation leading to remote code execution.
- CVE-2023-27770HIGHCVSS 7.8EG 7.82023-04-04
An issue found in Wondershare Technology Co.,Ltd Edraw-max v.12.0.4 allows a remote attacker to execute arbitrary commands via the edraw-max_setup_full5371.exe file.
- CVE-2023-27866MEDIUMCVSS 6.3EG 6.32023-06-28
IBM Informix JDBC Driver 4.10 and 4.50 is susceptible to remote code execution attack via JNDI injection when driver code or the application using the driver do not verify supplied LDAP URL in Connect String. IBM X-Force ID: 249511.
- CVE-2023-27867MEDIUMCVSS 6.3EG 6.32023-07-10
IBM Db2 JDBC Driver for Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 could allow a remote authenticated attacker to execute arbitrary code via JNDI Injection. By sending a specially crafted request using the property clientRerouteS…
- CVE-2023-27868MEDIUMCVSS 6.3EG 6.32023-07-10
IBM Db2 JDBC Driver for Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unchecked class instantiation when providing plugin classes. By …
- CVE-2023-27869MEDIUMCVSS 6.3EG 6.32023-07-10
IBM Db2 JDBC Driver for Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unchecked logger injection. By sending a specially crafted reque…
- CVE-2023-27893HIGHCVSS 8.8EG 8.82023-03-14
An attacker authenticated as a user with a non-administrative role and a common remote execution authorization in SAP Solution Manager and ABAP managed systems (ST-PI) - versions 2088_1_700, 2008_1_710, 740, can use a vulnerable interface …
- CVE-2023-27897MEDIUMCVSS 6.0EG 6.32023-04-11
In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions…
- CVE-2023-27986CRITICALCVSS 7.8EG 9.82023-03-09
emacsclient-mail.desktop in Emacs 28.1 through 28.2 is vulnerable to Emacs Lisp code injections through a crafted mailto: URI with unescaped double-quote characters. It is fixed in 29.0.90.
- CVE-2023-28333CRITICALCVSS 9.8EG 9.82023-03-23
The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).
Map vulnerabilities like CWE-94 to your infrastructure
EchelonGraph correlates every CVE — across CWE-94 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →