Weaknesses of type CWE-77

2,829 results

Injeção de comando por entrada não neutralizada

O software monta um comando (shell, sistema operacional ou aplicação) usando dados recebidos de fora (entrada do usuário, API, banco de dados) sem remover ou neutralizar caracteres especiais que alteram a semântica do comando. Isso permite que um atacante injete comandos arbitrários que serão executados com as permissões da aplicação.

Example

Um script PHP que executa ping com o IP fornecido pelo usuário: `system('ping ' . $_GET['ip'])`. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, porque o ponto-e-vírgula não foi escapado e o shell interpreta dois comandos sequenciais.

How to mitigate

Use APIs seguras que não envolvem interpretação de shell (ex: ProcessBuilder em Java, subprocess.run com shell=False em Python). Se imperativo usar shell, valide com whitelist rigorosa (apenas caracteres alfanuméricos/IPs válidos) e escape com funções específicas da linguagem (escapeshellarg em PHP, shlex.quote em Python).

CVE-2025-31710MEDIUMIn engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privEPSS 0.4%CVE-2026-24685CRITICALOpenProject has Argument Injection on Repository module that allows Arbitrary File WriteEPSS 0.4%CVE-2025-60268MEDIUMAn arbitrary file upload vulnerability exists in JeeWMS 20250820, which is caused by the lack of file checking in the saveFiles function in EPSS 0.4%CVE-2025-64671HIGHGitHub Copilot for Jetbrains Remote Code Execution VulnerabilityEPSS 0.4%CVE-2024-7110MEDIUMImproper Neutralization of Special Elements used in a Command ('Command Injection') in GitLabEPSS 0.4%CVE-2026-40034HIGHgitoxide - Command Injection via Partial .gitmodules Override in gix-submoduleEPSS 0.4%CVE-2025-25504MEDIUMAn issue in the /usr/local/bin/jncs.sh script of Gefen WebFWC (In AV over IP products) v1.85h, v1.86v, and v1.70 allows attackers with netwoEPSS 0.4%CVE-2021-34729MEDIUMCisco IOS XE SD-WAN Software Command Injection VulnerabilityEPSS 0.4%CVE-2025-33181HIGHNVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could inject a command. A EPSS 0.4%CVE-2021-34725MEDIUMCisco IOS XE SD-WAN Software Command Injection VulnerabilityEPSS 0.4%CVE-2025-27954MEDIUMAn issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code viaEPSS 0.4%CVE-2025-70093HIGHAn issue in OpenSourcePOS v3.4.1 allows attackers to execute arbitrary code via returning a crafted AJAX response.EPSS 0.4%CVE-2024-51259CRITICALDrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the EPSS 0.4%CVE-2026-50520HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 0.4%CVE-2022-40746HIGHIBM i Access Family 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.0 could allow a local authenticated attacker to execute arbitrary code on EPSS 0.4%CVE-2026-41153MEDIUMIn JetBrains Junie before 252.549.29 command execution was possible via malicious project fileEPSS 0.4%CVE-2025-63604MEDIUMA code injection vulnerability exists in baryhuang/mcp-server-aws-resources-python 0.1.0 that allows remote code execution through insufficiEPSS 0.4%CVE-2025-63258MEDIUMA remote command execution (RCE) vulnerability was discovered in all H3C ERG3/ERG5 series routers and XiaoBei series routers, cloud gatewaysEPSS 0.3%CVE-2025-51459MEDIUMFile Upload vulnerability in agent.hub.controller.refresh_plugins in eosphoros-ai DB-GPT 0.7.0 allows remote attackers to execute arbitrary EPSS 0.3%CVE-2025-45011MEDIUMA HTML Injection vulnerability was discovered in the foreigner-search.php file of PHPGurukul Park Ticketing Management System v2.0. This vulEPSS 0.3%