CWE-88 · 413 records
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')
CVEs in this class
413 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
99Now | CVE-2016-10033Weaponized | The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail cphpmailer project · phpmailer · CWE-88 | Critical9.8 | KEV | 99.7% | Dec 30, 2016 |
99Now | CVE-2026-24061Weaponized | telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.gnu · inetutils · CWE-88 | Critical9.8 | KEV | 99.0% | Jan 21, 2026 |
70This week | CVE-2024-41710Weaponized | A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (mitel · 6970 firmware · CWE-88 | High7.2 | KEV | 41.6% | Aug 12, 2024 |
69This week | CVE-2007-0882Weaponized | Argument injection vulnerability in the telnet daemon (in.telnetd) in Solaris 10 and 11 (SunOS 5.10 and 5.11) misinterprets certain client "sun · sunos · CWE-88 | Critical10.0 | — | 98.0% | Feb 12, 2007 |
68This week | CVE-2018-17456Weaponized | Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows rgit-scm · git · CWE-88 | Critical9.8 | — | 97.4% | Oct 6, 2018 |
68This week | CVE-2026-86060Weaponized | SSH session privilege manipulation via a crafted username in Mikrotik RouterOSmikrotik · routeros · CWE-88 | Critical9.2 | KEV | 6.4% | Sep 5, 2026 |
61This week | CVE-2021-33564Proof of concept | An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files dragonfly project · dragonfly · CWE-88 | Critical9.8 | — | 72.1% | May 29, 2021 |
59Plan | CVE-2018-19518Weaponized | University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means of php · php · CWE-88 | High7.5 | — | 96.1% | Nov 25, 2018 |
58Plan | CVE-2022-23221Proof of concept | H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTINGh2database · h2 · CWE-88 | Critical9.8 | — | 64.8% | Jan 19, 2022 |
51Plan | CVE-2020-21224Proof of concept | A Remote Code Execution vulnerability has been found in Inspur ClusterEngine V4.0.inspur · clusterengine · CWE-88 | Critical9.8 | — | 38.7% | Feb 22, 2021 |
48Plan | CVE-2019-6453Proof of concept | mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers.mirc · mirc · CWE-88 | High8.1 | — | 54.3% | Feb 18, 2019 |
47Plan | CVE-2024-52301Proof of concept | Laravel allows environment manipulation via query stringlaravel · framework · CWE-88 | High8.7 | — | 44.8% | Nov 12, 2024 |
46Plan | CVE-2020-5792Weaponized | Improper neutralization of argument delimiters in a command in Nagios XI 5.7.3 allows a remote, authenticated admin user to write to arbitranagios · nagios xi · CWE-88 | High7.2 | — | 59.5% | Oct 20, 2020 |
45Plan | CVE-2022-25766No exploit | Remote Code Execution (RCE)ungit project · ungit · CWE-88 | High8.8 | — | 34.5% | Mar 21, 2022 |
45Plan | CVE-1999-0113Proof of concept | Some implementations of rlogin allow root access if given a -froot parameter.ibm · aix · CWE-88 | Critical10.0 | — | 17.2% | May 23, 1994 |
44Plan | CVE-2004-0121Proof of concept | Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as argumemicrosoft · office · CWE-88 | High7.5 | — | 47.7% | Apr 15, 2004 |
44Plan | CVE-2021-1531No exploit | Cisco Modeling Labs Web UI Command Injection Vulnerabilitycisco · modeling labs · CWE-88 | High8.8 | — | 30.5% | May 22, 2021 |
43Plan | CVE-2020-13699Weaponized | TeamViewer Desktop for Windows before 15.8.3 does not properly quote its custom URI handlers.teamviewer · teamviewer · CWE-88 | High8.8 | — | 25.8% | Jul 29, 2020 |
43Plan | CVE-2004-0480No exploit | Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that usibm · lotus notes · CWE-88 | Critical10.0 | — | 8.6% | Dec 6, 2004 |
42Plan | CVE-2021-3401No exploit | Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformplugbitcoin · bitcoin · CWE-88 | Critical9.8 | — | 10.5% | Feb 4, 2021 |
42Plan | CVE-2021-26937No exploit | encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or gnu · screen · CWE-88 | Critical9.8 | — | 9.1% | Feb 9, 2021 |
42Plan | CVE-2023-6634Proof of concept | LearnPress <= 4.2.5.7 - Command Injectionthimpress · learnpress · CWE-88 | Critical9.8 | — | 8.5% | Jan 11, 2024 |
41Plan | CVE-2024-39930Proof of concept | The built-in SSH server of Gogs through 0.13.0 allows argument injection in internal/ssh/ssh.go, leading to remote code execution.gogs · gogs · CWE-88 | Critical9.9 | — | 7.7% | Jul 4, 2024 |
41Plan | CVE-2022-25865No exploit | The package workspace-tools before 0.18.4 are vulnerable to Command Injection via git argument injection.microsoft · workspace-tools · CWE-88 | Critical9.8 | — | 6.7% | May 13, 2022 |
41Plan | CVE-2022-30284No exploit | In the python-libnmap package through 0.7.2 for Python, remote command execution can occur (if used in a client application that does not vapython-libnmap project · python-libnmap · CWE-88 | Critical9.8 | — | 5.5% | May 4, 2022 |
- CVE-2016-1003399Now
The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail c
CriticalCVSS 9.8KEVWeaponizedEPSS 100%phpmailer project · phpmailerDec 30, 2016
- CVE-2026-2406199Now
telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.
CriticalCVSS 9.8KEVWeaponizedEPSS 99%gnu · inetutilsJan 21, 2026
- CVE-2024-4171070This week
A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (
HighCVSS 7.2KEVWeaponizedEPSS 42%mitel · 6970 firmwareAug 12, 2024
- CVE-2007-088269This week
Argument injection vulnerability in the telnet daemon (in.telnetd) in Solaris 10 and 11 (SunOS 5.10 and 5.11) misinterprets certain client "
CriticalCVSS 10.0WeaponizedEPSS 98%sun · sunosFeb 12, 2007
- CVE-2018-1745668This week
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows r
CriticalCVSS 9.8WeaponizedEPSS 97%git-scm · gitOct 6, 2018
- CVE-2026-8606068This week
SSH session privilege manipulation via a crafted username in Mikrotik RouterOS
CriticalCVSS 9.2KEVWeaponizedEPSS 6%mikrotik · routerosSep 5, 2026
- CVE-2021-3356461This week
An argument injection vulnerability in the Dragonfly gem before 1.4.0 for Ruby allows remote attackers to read and write to arbitrary files
CriticalCVSS 9.8Proof of conceptEPSS 72%dragonfly project · dragonflyMay 29, 2021
- CVE-2018-1951859Plan
University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means of
HighCVSS 7.5WeaponizedEPSS 96%php · phpNov 25, 2018
- CVE-2022-2322158Plan
H2 Console before 2.1.210 allows remote attackers to execute arbitrary code via a jdbc:h2:mem JDBC URL containing the IGNORE_UNKNOWN_SETTING
CriticalCVSS 9.8Proof of conceptEPSS 65%h2database · h2Jan 19, 2022
- CVE-2020-2122451Plan
A Remote Code Execution vulnerability has been found in Inspur ClusterEngine V4.0.
CriticalCVSS 9.8Proof of conceptEPSS 39%inspur · clusterengineFeb 22, 2021
- CVE-2019-645348Plan
mIRC before 7.55 allows remote command execution by using argument injection through custom URI protocol handlers.
HighCVSS 8.1Proof of conceptEPSS 54%mirc · mircFeb 18, 2019
- CVE-2024-5230147Plan
Laravel allows environment manipulation via query string
HighCVSS 8.7Proof of conceptEPSS 45%laravel · frameworkNov 12, 2024
- CVE-2020-579246Plan
Improper neutralization of argument delimiters in a command in Nagios XI 5.7.3 allows a remote, authenticated admin user to write to arbitra
HighCVSS 7.2WeaponizedEPSS 59%nagios · nagios xiOct 20, 2020
- CVE-2022-2576645Plan
Remote Code Execution (RCE)
HighCVSS 8.8No exploitEPSS 35%ungit project · ungitMar 21, 2022
- CVE-1999-011345Plan
Some implementations of rlogin allow root access if given a -froot parameter.
CriticalCVSS 10.0Proof of conceptEPSS 17%ibm · aixMay 23, 1994
- CVE-2004-012144Plan
Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as argume
HighCVSS 7.5Proof of conceptEPSS 48%microsoft · officeApr 15, 2004
- CVE-2021-153144Plan
Cisco Modeling Labs Web UI Command Injection Vulnerability
HighCVSS 8.8No exploitEPSS 30%cisco · modeling labsMay 22, 2021
- CVE-2020-1369943Plan
TeamViewer Desktop for Windows before 15.8.3 does not properly quote its custom URI handlers.
HighCVSS 8.8WeaponizedEPSS 26%teamviewer · teamviewerJul 29, 2020
- CVE-2004-048043Plan
Argument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that us
CriticalCVSS 10.0No exploitEPSS 9%ibm · lotus notesDec 6, 2004
- CVE-2021-340142Plan
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformplug
CriticalCVSS 9.8No exploitEPSS 10%bitcoin · bitcoinFeb 4, 2021
- CVE-2021-2693742Plan
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or
CriticalCVSS 9.8No exploitEPSS 9%gnu · screenFeb 9, 2021
- CVE-2023-663442Plan
LearnPress <= 4.2.5.7 - Command Injection
CriticalCVSS 9.8Proof of conceptEPSS 9%thimpress · learnpressJan 11, 2024
- CVE-2024-3993041Plan
The built-in SSH server of Gogs through 0.13.0 allows argument injection in internal/ssh/ssh.go, leading to remote code execution.
CriticalCVSS 9.9Proof of conceptEPSS 8%gogs · gogsJul 4, 2024
- CVE-2022-2586541Plan
The package workspace-tools before 0.18.4 are vulnerable to Command Injection via git argument injection.
CriticalCVSS 9.8No exploitEPSS 7%microsoft · workspace-toolsMay 13, 2022
- CVE-2022-3028441Plan
In the python-libnmap package through 0.7.2 for Python, remote command execution can occur (if used in a client application that does not va
CriticalCVSS 9.8No exploitEPSS 5%python-libnmap project · python-libnmapMay 4, 2022