Weaknesses of type CWE-78

4,634 results

Injeção de comandos do sistema operacional

A aplicação constrói comandos do SO usando entrada do usuário sem sanitizar adequadamente, permitindo que um atacante injete comandos arbitrários. Quando a entrada contém metacaracteres (como `|`, `;`, `&&`, backticks), o shell interpreta-os como operadores, executando código não intencional com os privilégios da aplicação.

Example

Um script PHP que executa `system('ping ' . $_GET['host'])` permite um atacante passar `127.0.0.1; rm -rf /` como parâmetro, executando deleção de arquivos. Ou em Java, `Runtime.exec()` com strings concatenadas do usuário sem validação.

How to mitigate

Use APIs que não invocam shell (ex: `execvp()` em C, arrays de parâmetros em Java/Python, ou prepared commands). Se inevitável usar shell, escape rigorosamente com funções específicas (`escapeshellarg()` em PHP) ou valide contra whitelist de caracteres permitidos. Nunca confie em blacklist de caracteres perigosos.

CVE-2026-11408MEDIUMvertex-app vertex Log Viewer Endpoint LogMod.js os command injectionEPSS 1.1%CVE-2023-47562HIGHPhoto StationEPSS 1.1%CVE-2023-33869MEDIUMEnphase Envoy OS Command InjectionEPSS 1.1%CVE-2025-26055MEDIUMAn OS Command Injection vulnerability exists in the Infinxt iEdge 100 2.1.32 Troubleshoot module, specifically in the tracertVal parameter oEPSS 1.1%CVE-2024-51661CRITICALWordPress Media Library Assistant plugin <= 3.19 - Remote Code Execution (RCE) vulnerabilityEPSS 1.1%CVE-2023-26317HIGHXiaomi router external request interface has command injectionEPSS 1.1%CVE-2023-44403HIGHD-Link DAP-1325 HNAP SetWLanRadioSettings Channel Command Injection Remote Code Execution VulnerabilityEPSS 1.1%CVE-2024-43405HIGHNuclei Template Signature Verification BypassEPSS 1.1%CVE-2023-53945HIGHBrainyCP 1.0 Remote Code Execution via Authenticated Crontab ManipulationEPSS 1.1%CVE-2024-31408HIGHOS command injection vulnerability exists in AIPHONE IX SYSTEM and IXG SYSTEM. A network-adjacent authenticated attacker may execute an arbiEPSS 1.1%CVE-2023-47567MEDIUMQTS, QuTS hero, QuTScloudEPSS 1.1%CVE-2023-24467HIGHPossible Command Injection in OpenText iManagerEPSS 1.1%CVE-2022-25926HIGHVersions of the package window-control before 1.4.5 are vulnerable to Command Injection via the sendKeys function, due to improper input sanEPSS 1.1%CVE-2025-9588CRITICALOS Command Injection in Iron Mountain's enVisionEPSS 1.1%CVE-2023-33839HIGHIBM Security Verify Governance command executionEPSS 1.1%CVE-2026-26279CRITICALFroxlor Admin-to-Root Privilege Escalation via Input Validation Bypass + OS Command InjectionEPSS 1.1%CVE-2025-53376MEDIUMDokploy allows attackers to run arbitrary OS commands on the Dokploy host.EPSS 1.1%CVE-2022-25916HIGHVersions of the package mt7688-wiscan before 0.8.3 are vulnerable to Command Injection due to improper input sanitization in the 'wiscan.scaEPSS 1.1%CVE-2024-4301HIGHN-Reporter and N-Cloud from N-Partner - Os Command InjectionEPSS 1.1%CVE-2024-36394CRITICALSysAid - CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')EPSS 1.1%