Remote Code Execution

⚔️ Attack Types Related 19
slug: rce

Explanation

RCE (Remote Code Execution) は「攻撃者が遠隔から、サーバー上で任意のプログラムを実行できる」最も深刻な脆弱性です。 これが成立すると、サーバー全体が乗っ取られ、データ全削除・暗号通貨マイニング・ランサムウェア感染・他社攻撃の踏み台化など何でもされます。 セキュリティ業界では「最悪レベル」「最優先で塞ぐべき」と扱われます。
📌 Example
Log4Shell (CVE-2021-44228), Heartbleed (CVE-2014-0160) の後継 OpenSSL系, MOVEit Transfer (CVE-2023-34362) など。被害規模は数千億円〜兆円単位。

🔖 Related tags

🛡 Vulnerabilities tagged with this 2,172

ID Title
CVE-2026-47884 Path Traversal in spring (CVE-2026-47884)
CVE-2026-47875 Unsafe Deserialization in deserialization (CVE-2026-47875)
CVE-2026-47852 A local attacker on a multi-user host can pre-create the deterministic cache path and plant a...
CVE-2026-52103 Vulnerability in CVE-2026-52103 (CVE-2026-52103)
CVE-2026-71171 Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of...
CVE-2026-54569 Vulnerability in senaite.core (CVE-2026-54569)
CVE-2026-12717 Vulnerability in CVE-2026-12717 (CVE-2026-12717)
CVE-2026-77532 Vulnerability in CVE-2026-77532 (CVE-2026-77532)
CVE-2026-18080 Unrestricted File Upload in wordpress (CVE-2026-18080)
CVE-2026-18431 Vulnerability in wordpress (CVE-2026-18431)
CVE-2021-23758 KEV Ajax.NET Professional Ajax.NET Professional — Ajax.NET Professional Deserialization of Untrusted Data Vulnerability
CVE-2026-54757 Code Injection in compliance-trestle (CVE-2026-54757)
CVE-2026-75496 Unrestricted File Upload in CVE-2026-75496 (CVE-2026-75496)
CVE-2026-19912 Vulnerability in deserialization (CVE-2026-19912)
CVE-2026-79774 Vulnerability in CVE-2026-79774 (CVE-2026-79774)
CVE-2026-18798 Vulnerability in dos (CVE-2026-18798)
CVE-2026-63073 Vulnerability in dos (CVE-2026-63073)
CVE-2026-57863 Path Traversal in path-traversal (CVE-2026-57863)
CVE-2026-79657 Unsafe Deserialization in CVE-2026-79657 (CVE-2026-79657)
CVE-2026-19949 SQL Injection in wordpress (CVE-2026-19949)
CVE-2026-77136 Vulnerability in CVE-2026-77136 (CVE-2026-77136)
CVE-2026-77138 Unsafe Deserialization in CVE-2026-77138 (CVE-2026-77138)
CVE-2026-16601 The CM Map Locations – Visualize and share your locations in a few clicks plugin for WordPress is...
CVE-2026-68062 SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this...
CVE-2026-69665 SKYSEA Client View and SKYMEC IT Manager contain an issue with incorrect default permissions. If...
CVE-2026-13214 Out-of-Bounds Write in c (CVE-2026-13214)
CVE-2026-78685 Vulnerability in CVE-2026-78685 (CVE-2026-78685)
CVE-2026-78680 NLTK versions before 3.10.3 fail to use validated absolute paths when invoking the Graphviz dot...
CVE-2026-75574 The Grav Email plugin (getgrav/grav-plugin-email) before 4.2.2 renders page-editor-controlled...
CVE-2026-72696 Grav CMS before 2.0.16 contains a symlink following vulnerability in Scheduler Job:...

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →