Fallos del tipo CWE-120

3169 resultados

Execução de código ou comandos não autorizados

Fraqueza em que a aplicação executa código ou comandos sem validar adequadamente a origem, permissões ou conteúdo fornecido por um atacante. O perigo está em permitir que um usuário sem privilégios execute operações restritas, como comandos do sistema, funções administrativas ou código arbitrário, comprometendo toda a segurança da aplicação.

Ejemplo

Um painel de controle que permite ao usuário executar scripts de manutenção sem autenticação apropriada, ou uma função que passa entrada do usuário diretamente para eval() em Python/JavaScript, permitindo injeção de código malicioso que roda com as permissões da aplicação.

Cómo mitigar

Implemente validação rigorosa de entrada, use allowlists (não blacklists), mantenha controle de acesso baseado em roles (RBAC) com verificação em cada operação sensível, e evite construtores dinâmicos como eval(). Quando precisar executar comandos do sistema, use APIs seguras e nunca passe entrada do usuário sem sanitização completa.

CVE-2026-55277HIGHIn checkUiccListenConfigNeeded of RoutingManager.cpp, there is a possible out of bounds write due to a missing bounds check. This could leadEPSS 0.2%CVE-2024-52059MEDIUMBuffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Heap-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in RTI Connext Professional (Security Plugins) allows Overflow Variables and Tags.EPSS 0.2%CVE-2024-52062MEDIUMPotential stack buffer write overflow in Connext applications while parsing malicious XML types documentEPSS 0.2%CVE-2022-40540HIGHBuffer copy without checking the size of input in Linux KernelEPSS 0.2%CVE-2018-25345HIGH10-Strike Network Scanner 3.0 Local Buffer Overflow SEHEPSS 0.2%CVE-2026-84632HIGHThe issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden GEPSS 0.2%CVE-2021-25461MEDIUMAn improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow.EPSS 0.2%CVE-2018-25314HIGHAllok soft WMV to AVI MPEG DVD WMV Converter 4.6.1217 Buffer OverflowEPSS 0.2%CVE-2025-61147MEDIUMstrukturag libde265 commit d9fea9d wa discovered to contain a segmentation fault via the component decoder_context::compute_framedrop_table(EPSS 0.2%CVE-2022-35928HIGHAES Crypt for Linux Password Security VulnerabilityEPSS 0.2%CVE-2025-25522HIGHBuffer overflow vulnerability in Linksys WAP610N v1.0.05.002 due to the lack of length verification, which is related to the time setting opEPSS 0.2%CVE-2026-65398HIGHAn out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in iOS 27 and iPadOS 27, macOS Golden Gate 27EPSS 0.2%CVE-2025-8736MEDIUMGNU cflow Lexer c.c yylex buffer overflowEPSS 0.2%CVE-2018-25315HIGHAlloksoft Video joiner 4.6.1217 Buffer Overflow via License NameEPSS 0.2%CVE-2018-25299HIGHPrime95 29.4b8 Local Buffer Overflow via SEHEPSS 0.2%CVE-2018-25355HIGHAudiograbber 1.83 Local Buffer Overflow via SEHEPSS 0.2%CVE-2025-28164MEDIUMBuffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via png_create_read_struct() funcEPSS 0.2%CVE-2018-25356HIGHSIPp 3.6 Local Buffer Overflow via Command-line ArgumentsEPSS 0.2%CVE-2025-28162MEDIUMBuffer Overflow vulnerability in libpng 1.6.43-1.6.46 allows a local attacker to cause a denial of service via the pngimage with AddressSaniEPSS 0.2%CVE-2025-5038HIGHX_T File Parsing Memory Corruption VulnerabilityEPSS 0.2%