Weaknesses of type CWE-78

4,646 results

Injeção de comandos do sistema operacional

A aplicação constrói comandos do SO usando entrada do usuário sem sanitizar adequadamente, permitindo que um atacante injete comandos arbitrários. Quando a entrada contém metacaracteres (como `|`, `;`, `&&`, backticks), o shell interpreta-os como operadores, executando código não intencional com os privilégios da aplicação.

Example

Um script PHP que executa `system('ping ' . $_GET['host'])` permite um atacante passar `127.0.0.1; rm -rf /` como parâmetro, executando deleção de arquivos. Ou em Java, `Runtime.exec()` com strings concatenadas do usuário sem validação.

How to mitigate

Use APIs que não invocam shell (ex: `execvp()` em C, arrays de parâmetros em Java/Python, ou prepared commands). Se inevitável usar shell, escape rigorosamente com funções específicas (`escapeshellarg()` em PHP) ou valide contra whitelist de caracteres permitidos. Nunca confie em blacklist de caracteres perigosos.

CVE-2023-22304HIGHOS command injection vulnerability in PIX-RT100 versions RT100_TEQ_2.1.1_EQ101 and RT100_TEQ_2.1.2_EQ101 allows a network-adjacent attacker EPSS 0.9%CVE-2023-20219HIGHMultiple vulnerabilities in the web management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, rEPSS 0.9%CVE-2026-48345HIGHAnimate | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78)EPSS 0.9%CVE-2026-4556HIGHmacOS Exam4 Local Privilege Escalation via Command InjectionEPSS 0.9%CVE-2026-73414CRITICALShescape: Shell injection via unescaped parentheses on Windows with CMDEPSS 0.9%CVE-2020-3167HIGHCisco FXOS and UCS Manager Software CLI Command Injection VulnerabilityEPSS 0.9%CVE-2026-88888HIGHRenovate before 44.14.7 Command Injection via Mix organizationEPSS 0.9%CVE-2026-88885HIGHRenovate before 44.14.7 Command Injection via depNameEPSS 0.9%CVE-2024-10118CRITICALSECOM WRTR-304GN-304TW-UPSC - OS Command InjectionEPSS 0.9%CVE-2026-12398HIGHGalaxy_ng: shell injection in legacy role import via unsanitized git ref namesEPSS 0.9%CVE-2020-27298MEDIUMPhilips Interventional Workstations OS Command InjectionEPSS 0.9%CVE-2026-28470CRITICALOpenClaw < 2026.2.2 - Exec Allowlist Bypass via Command Substitution in Double QuotesEPSS 0.9%CVE-2025-3626CRITICALOS Command Injection via Config Upload in WebUIEPSS 0.9%CVE-2023-28392HIGHWi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_EPSS 0.9%CVE-2024-45798CRITICALMultiple Poisoned Pipeline Execution (PPE) vulnerabilitiesEPSS 0.9%CVE-2026-48731HIGHWarp: Linux external editor command injectionEPSS 0.9%CVE-2026-25593HIGHOpenClaw Affected by Unauthenticated Local RCE via WebSocket config.applyEPSS 0.9%CVE-2024-5785HIGHCommand injection vulnerability in Comtrend routerEPSS 0.9%CVE-2021-26616HIGHSecuwaySSL OS command injection vulnerabilityEPSS 0.9%CVE-2024-22224HIGH Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could pEPSS 0.9%