Remote Code Execution

⚔️ Attack Types Related 19
slug: rce

Explanation

RCE (Remote Code Execution) は「攻撃者が遠隔から、サーバー上で任意のプログラムを実行できる」最も深刻な脆弱性です。 これが成立すると、サーバー全体が乗っ取られ、データ全削除・暗号通貨マイニング・ランサムウェア感染・他社攻撃の踏み台化など何でもされます。 セキュリティ業界では「最悪レベル」「最優先で塞ぐべき」と扱われます。
📌 Example
Log4Shell (CVE-2021-44228), Heartbleed (CVE-2014-0160) の後継 OpenSSL系, MOVEit Transfer (CVE-2023-34362) など。被害規模は数千億円〜兆円単位。

🔖 Related tags

🛡 Vulnerabilities tagged with this 2,172

ID Title
CVE-2026-10520 KEV [KEV] OS Command Injection in Ivanti standalone-sentry (CVE-2026-10520)
CVE-2026-9279 OS Command Injection in CVE-2026-9279 (CVE-2026-9279)
CVE-2026-49740 Unsafe Deserialization in typo3/cms-core (CVE-2026-49740)
CVE-2026-8365 Unsafe Deserialization in wordpress (CVE-2026-8365)
CVE-2026-45034 Unsafe Deserialization in phpoffice/phpspreadsheet (CVE-2026-45034)
CVE-2026-40519 OS Command Injection in nginx (CVE-2026-40519)
CVE-2026-25559 Path Traversal in path-traversal (CVE-2026-25559)
CVE-2026-25855 OS Command Injection in CVE-2026-25855 (CVE-2026-25855)
CVE-2026-25856 Code Injection in c (CVE-2026-25856)
CVE-2026-11483 A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This...
CVE-2024-58348 Unrestricted File Upload in wordpress (CVE-2024-58348)
CVE-2023-54352 Vulnerability in wordpress (CVE-2023-54352)
CVE-2024-58349 Unrestricted File Upload in wordpress (CVE-2024-58349)
CVE-2023-54350 Vulnerability in c (CVE-2023-54350)
CVE-2026-11462 A vulnerability was found in Chengdu Everbrite Network Technology BeikeShop up to 1.6.0.22. This...
CVE-2026-11463 A vulnerability was determined in USCiLab Cereal up to 1.3.2. Affected is an unknown function of...
CVE-2026-7537 Unrestricted File Upload in wordpress (CVE-2026-7537)
CVE-2026-7654 Unsafe Deserialization in wordpress (CVE-2026-7654)
CVE-2026-11429 Path Traversal in path-traversal (CVE-2026-11429)
CVE-2026-46400 Unrestricted File Upload in CVE-2026-46400 (CVE-2026-46400)
CVE-2026-11420 Path Traversal in path-traversal (CVE-2026-11420)
CVE-2026-11419 Path Traversal in path-traversal (CVE-2026-11419)
CVE-2026-5411 The WP Captcha PRO (the premium version of the Advanced Google reCAPTCHA plugin, both have the...
CVE-2026-46394 OS Command Injection in CVE-2026-46394 (CVE-2026-46394)
CVE-2026-46392 HAX CMS helps manage microsite universe with PHP or NodeJs backends. Prior to version 26.0.0 of HAX CMS PHP, the `saveFile` endpoint validates upload extensions case-insensitively and writes the filen...
CVE-2026-45746 Vulnerability in termix (CVE-2026-45746)
CVE-2026-47670 Command Injection in dbgate-api (CVE-2026-47670)
CVE-2026-47668 Vulnerability in dbgate-serve (CVE-2026-47668)
CVE-2026-10732 Path Traversal in decompress (CVE-2026-10732)
CVE-2026-7763 Vulnerability in c (CVE-2026-7763)

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →