Weaknesses of type CWE-78

4,653 results

Injeção de comandos do sistema operacional

A aplicação constrói comandos do SO usando entrada do usuário sem sanitizar adequadamente, permitindo que um atacante injete comandos arbitrários. Quando a entrada contém metacaracteres (como `|`, `;`, `&&`, backticks), o shell interpreta-os como operadores, executando código não intencional com os privilégios da aplicação.

Example

Um script PHP que executa `system('ping ' . $_GET['host'])` permite um atacante passar `127.0.0.1; rm -rf /` como parâmetro, executando deleção de arquivos. Ou em Java, `Runtime.exec()` com strings concatenadas do usuário sem validação.

How to mitigate

Use APIs que não invocam shell (ex: `execvp()` em C, arrays de parâmetros em Java/Python, ou prepared commands). Se inevitável usar shell, escape rigorosamente com funções específicas (`escapeshellarg()` em PHP) ou valide contra whitelist de caracteres permitidos. Nunca confie em blacklist de caracteres perigosos.

CVE-2026-81550HIGHDataStage on Cloud Pak for Data has several vulnerabilities due to open source softwareEPSS 0.8%CVE-2024-51244HIGHIn Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doEPSS 0.8%CVE-2024-0167HIGH Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in the svc_topstats utility. An authenticated attacker coEPSS 0.8%CVE-2026-32003HIGHOpenClaw < 2026.2.22 - Remote Code Execution via SHELLOPTS/PS4 Environment Injection in system.runEPSS 0.8%CVE-2026-17625HIGHLangflow is affected by OS Command Injection in Model Context Protocol featuresEPSS 0.8%CVE-2026-55158CRITICALConflibot: Command injection via crafted pull request branch names under pull_request_targetEPSS 0.8%CVE-2021-21570MEDIUMDell NetWorker, versions 18.x and 19.x contain an Information disclosure vulnerability. A NetWorker server user with remote access to NetWorEPSS 0.8%CVE-2025-2983MEDIUMLegrand SMS PowerView os command injectionEPSS 0.8%CVE-2022-1362MEDIUMCambium Networks cnMaestro OS Command InjectionEPSS 0.8%CVE-2026-57133HIGHPraisonAI utility shell safe-command wrapper allowlist bypass via shell chainingEPSS 0.8%CVE-2025-58371CRITICALRoo Code is vulnerable to command injection via GitHub actions workflowEPSS 0.8%CVE-2026-58652HIGHluci-app-travelmate - Arbitrary Command Execution via UCI Script ParameterEPSS 0.8%CVE-2022-45461HIGHThe Java Admin Console in Veritas NetBackup through 10.1 and related Veritas products on Linux and UNIX allows authenticated non-root users EPSS 0.8%CVE-2024-21903MEDIUMQTS, QuTS heroEPSS 0.8%CVE-2011-10007HIGHFile::Find::Rule through 0.34 for Perl is vulnerable to Arbitrary Code Execution when `grep()` encounters a crafted file nameEPSS 0.8%CVE-2022-43466MEDIUMOS command injection vulnerability in Buffalo network devices allows a network-adjacent attacker with an administrative privilege to executeEPSS 0.8%CVE-2026-25063HIGHgradle-completion has a Bash command injection issueEPSS 0.8%CVE-2022-22555MEDIUMDell EMC PowerStore, contains an OS command injection Vulnerability. A locally authenticated attacker could potentially exploit this vulneraEPSS 0.8%CVE-2026-32968CRITICALUnauthenticated RCE in com_mb24sysapiEPSS 0.8%CVE-2023-34254HIGHRemote inventory task command injection when using ssh command modeEPSS 0.8%