Weaknesses of type CWE-78

4,604 results

Injeção de comandos do sistema operacional

A aplicação constrói comandos do SO usando entrada do usuário sem sanitizar adequadamente, permitindo que um atacante injete comandos arbitrários. Quando a entrada contém metacaracteres (como `|`, `;`, `&&`, backticks), o shell interpreta-os como operadores, executando código não intencional com os privilégios da aplicação.

Example

Um script PHP que executa `system('ping ' . $_GET['host'])` permite um atacante passar `127.0.0.1; rm -rf /` como parâmetro, executando deleção de arquivos. Ou em Java, `Runtime.exec()` com strings concatenadas do usuário sem validação.

How to mitigate

Use APIs que não invocam shell (ex: `execvp()` em C, arrays de parâmetros em Java/Python, ou prepared commands). Se inevitável usar shell, escape rigorosamente com funções específicas (`escapeshellarg()` em PHP) ou valide contra whitelist de caracteres permitidos. Nunca confie em blacklist de caracteres perigosos.

CVE-2020-2028HIGHPAN-OS: OS command injection vulnerability in FIPS-CC mode certificate verificationEPSS 1.8%CVE-2026-71931HIGHDrayTek VigorSwitch Multiple Models OS Command Injection via tftp_upgradeEPSS 1.8%CVE-2026-71913HIGHDrayTek VigorAP Multiple Models OS Command Injection via upload_settings.cgiEPSS 1.8%CVE-2021-4281MEDIUMBrave UX for-the-badge combine-prs.yml os command injectionEPSS 1.8%CVE-2005-10003MEDIUMmikexstudios Xcomic os command injectionEPSS 1.8%CVE-2024-50569MEDIUMA improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb 7.0.0 through 7.6.0 allowsEPSS 1.8%CVE-2024-43649CRITICALAuthenticated command injection via <redacted>.exe <redacted> parameterEPSS 1.8%CVE-2021-3050HIGHPAN-OS: OS Command Injection Vulnerability in Web InterfaceEPSS 1.8%CVE-2023-48667HIGH Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injection vulnerability in EPSS 1.8%CVE-2024-9140CRITICALMoxa’s cellular routers, secure routers, and network security appliances are affected by a critical vulnerability, CVE-2024-9140. This vulneEPSS 1.8%CVE-2020-26294HIGHExposure of server configurationEPSS 1.8%CVE-2026-26355MEDIUMDell PowerProtect Data Domain, versions 7.7.1.0 through 8.7, LTS2026 release version 8.6.1.0 through 8.6.1.10, LTS2025 release version 8.3.1EPSS 1.8%CVE-2023-49038HIGHCommand injection in the ping utility on Buffalo LS210D 1.78-0.03 allows a remote authenticated attacker to inject arbitrary commands onto tEPSS 1.8%CVE-2026-15487MEDIUMTRENDnet TEW-821DAP Firmware Update system_ntp sub_41FBD0 os command injectionEPSS 1.8%CVE-2026-9532MEDIUMTotolink CA750-PoE Setting cstecgi.cgi setUploadUserData os command injectionEPSS 1.8%CVE-2026-15547MEDIUMShibby Tomato CIFS Mount sub_2D048 os command injectionEPSS 1.8%CVE-2026-36045HIGHpicoclaw <=v0.1.2 and earlier is vulnerable to OS command injection via the ExecTool component (pkg/tools/shell.go). The guardCommand() funcEPSS 1.8%CVE-2026-9511MEDIUMTotolink CA750-PoE Setting cstecgi.cgi setWebWlanIdx os command injectionEPSS 1.8%CVE-2026-15485MEDIUMTRENDnet TEW-821DAP DNS Lookup tools_nslookup sub_43F2C4 os command injectionEPSS 1.8%CVE-2026-19981MEDIUMGL.iNet XE3000 Wi-Fi Timer Power-Schedule Feature os command injectionEPSS 1.8%