Fallos del tipo CWE-120

3169 resultados

Execução de código ou comandos não autorizados

Fraqueza em que a aplicação executa código ou comandos sem validar adequadamente a origem, permissões ou conteúdo fornecido por um atacante. O perigo está em permitir que um usuário sem privilégios execute operações restritas, como comandos do sistema, funções administrativas ou código arbitrário, comprometendo toda a segurança da aplicação.

Ejemplo

Um painel de controle que permite ao usuário executar scripts de manutenção sem autenticação apropriada, ou uma função que passa entrada do usuário diretamente para eval() em Python/JavaScript, permitindo injeção de código malicioso que roda com as permissões da aplicação.

Cómo mitigar

Implemente validação rigorosa de entrada, use allowlists (não blacklists), mantenha controle de acesso baseado em roles (RBAC) com verificação em cada operação sensível, e evite construtores dinâmicos como eval(). Quando precisar executar comandos do sistema, use APIs seguras e nunca passe entrada do usuário sem sanitização completa.

CVE-2025-54632MEDIUMVulnerability of insufficient data length verification in the HVB module. Impact: Successful exploitation of this vulnerability may affect sEPSS 0.1%CVE-2022-25712MEDIUMMemory corruption in camera due to buffer copy without checking size of input in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOEPSS 0.1%CVE-2026-58552MEDIUMOut-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confideEPSS 0.1%CVE-2026-58551MEDIUMOut-of-bounds read vulnerability in the image codec module. Impact: Successful exploitation of this vulnerability may affect service confideEPSS 0.1%CVE-2025-36924HIGHIn ss_DecodeLcsAssistDataReqMsg(void) of ss_LcsManagement.c, there is a possible out of bounds write due to an incorrect bounds check. This EPSS 0.1%CVE-2022-33277HIGHBuffer copy without checking size of input in modemEPSS 0.1%CVE-2022-25655HIGHBuffer copy without checking the size of input in WLAN HAL.EPSS 0.1%CVE-2022-33278HIGHBuffer copy without checking the size of input in HLOSEPSS 0.1%CVE-2022-25724HIGHMemory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon CoEPSS 0.1%CVE-2023-33030CRITICALBuffer Copy without Checking Size of Input in HLOSEPSS 0.1%CVE-2022-39120MEDIUMIn sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kerneEPSS 0.1%CVE-2022-39122MEDIUMIn sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kerneEPSS 0.1%CVE-2022-39121MEDIUMIn sensor driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in kerneEPSS 0.1%CVE-2024-23375MEDIUMBuffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in RILEPSS 0.1%CVE-2023-24284LOWPortable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the is_markable() function.EPSS 0.1%CVE-2023-24291LOWPortable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the record length parameter.EPSS 0.1%CVE-2023-24285LOWPortable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow which is triggered when an unusually long movEPSS 0.1%CVE-2023-24287LOWPortable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the "M" command.EPSS 0.1%CVE-2025-8412LOWVMDP: Potential buffer overflow in the RtlQueryRegistryValues functionEPSS 0.1%CVE-2022-33217HIGHMemory corruption in Qualcomm IPC due to buffer copy without checking the size of input while starting communication with a compromised kernEPSS 0.1%