Weaknesses of type CWE-78

4,637 results

Injeção de comandos do sistema operacional

A aplicação constrói comandos do SO usando entrada do usuário sem sanitizar adequadamente, permitindo que um atacante injete comandos arbitrários. Quando a entrada contém metacaracteres (como `|`, `;`, `&&`, backticks), o shell interpreta-os como operadores, executando código não intencional com os privilégios da aplicação.

Example

Um script PHP que executa `system('ping ' . $_GET['host'])` permite um atacante passar `127.0.0.1; rm -rf /` como parâmetro, executando deleção de arquivos. Ou em Java, `Runtime.exec()` com strings concatenadas do usuário sem validação.

How to mitigate

Use APIs que não invocam shell (ex: `execvp()` em C, arrays de parâmetros em Java/Python, ou prepared commands). Se inevitável usar shell, escape rigorosamente com funções específicas (`escapeshellarg()` em PHP) ou valide contra whitelist de caracteres permitidos. Nunca confie em blacklist de caracteres perigosos.

CVE-2024-4301HIGHN-Reporter and N-Cloud from N-Partner - Os Command InjectionEPSS 1.1%CVE-2024-0166HIGH Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_tcpdump utility. An authenticated attacker couEPSS 1.1%CVE-2026-22100HIGHComnand injection in OCPP ReserveLogin messageEPSS 1.1%CVE-2026-76156CRITICALDatiphy Data Management Center - Improper Neutralization of Special Elements used in an OS CommandEPSS 1.1%CVE-2024-36061CRITICALEnGenius EWS356-FIT devices through 1.1.30 allow blind OS command injection. This allows an attacker to execute arbitrary OS commands via shEPSS 1.1%CVE-2024-8278HIGHA privilege escalation vulnerability was discovered in XCC that could allow a valid, authenticated XCC user with elevated privileges to perfEPSS 1.1%CVE-2024-8279HIGHA privilege escalation vulnerability was discovered in XCC that could allow a valid, authenticated XCC user with elevated privileges to perfEPSS 1.1%CVE-2025-6225MEDIUMCommand injection in Kieback&Peter Neutrino-GLTEPSS 1.1%CVE-2024-20483HIGHCisco IOS XR PON Controller Command Injection VulnerabilitiesEPSS 1.1%CVE-2026-72579HIGHNASA HyperCP - OS Command Injection via Malicious HTTP Response from Data ServerEPSS 1.1%CVE-2023-38319CRITICALAn issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that EPSS 1.1%CVE-2024-10202HIGHWellchoose Administrative Management System - OS Command InjectionEPSS 1.1%CVE-2023-38317CRITICALAn issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the network interface name entry in the configuration file, allowing EPSS 1.1%CVE-2023-38323CRITICALAn issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the status path script entry in the configuration file, allowing attaEPSS 1.1%CVE-2023-38318CRITICALAn issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the gateway FQDN entry in the configuration file, allowing attackers EPSS 1.1%CVE-2024-23812HIGHA vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application incorrectly neutralizes special elementEPSS 1.1%CVE-2025-49813MEDIUMAn improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC veEPSS 1.1%CVE-2024-35304CRITICALSystem command injection through Netflow functionEPSS 1.1%CVE-2023-32976MEDIUMContainer StationEPSS 1.1%CVE-2023-24958HIGHIBM TS7700 Management Interface command injectionEPSS 1.1%