Fallos del tipo CWE-77
2829 resultadosInjeção de comando via entrada não sanitizada
O software constrói comandos (shell, SQL, LDAP, etc.) usando dados de entrada do usuário sem neutralizar caracteres especiais que alteram a semântica do comando. Um atacante injeta metacaracteres (como `;`, `|`, `$()`) para executar instruções não previstas.
Ejemplo
Um script PHP que executa `system('ping ' . $_GET['host'])` sem validação. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos, porque o ponto-e-vírgula encadeia comandos no shell.
Cómo mitigar
Use APIs de execução que separam dados de comando (ex: `execvp()` com array de argumentos em vez de shell, prepared statements para SQL). Se shell for inevitável, whitelist rigoroso de entrada e escape apropriado com `escapeshellarg()` ou equivalente na linguagem.
CVE-2018-0224—A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow an authenEPSS 0.5%CVE-2023-20075MEDIUMVulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands.
TheseEPSS 0.5%CVE-2019-1607MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1607)EPSS 0.4%CVE-2019-1779MEDIUMCisco FXOS and NX-OS Software Command Injection VulnerabilityEPSS 0.4%CVE-2019-1610MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1610)EPSS 0.4%CVE-2019-1780MEDIUMCisco FXOS and NX-OS Software Command Injection VulnerabilityEPSS 0.4%CVE-2019-1611MEDIUMCisco FXOS and NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1611)EPSS 0.4%CVE-2018-0433—Cisco SD-WAN Solution Command Injection VulnerabilityEPSS 0.4%CVE-2019-1608MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1608)EPSS 0.4%CVE-2019-12661MEDIUMCisco IOS XE Software Virtualization Manager CLI Command Injection VulnerabilityEPSS 0.4%CVE-2024-4639HIGHOnCell G3470A-LTE Series: Authenticated Command Injection via webDelIPSecEPSS 0.4%CVE-2023-20152MEDIUMCisco Identity Services Engine Command Injection VulnerabilitiesEPSS 0.4%CVE-2022-34383HIGHDell Edge Gateway 5200 (EGW) versions before 1.03.10 contain an operating system command injection vulnerability. A local malicious user mayEPSS 0.4%CVE-2023-20153MEDIUMCisco Identity Services Engine Command Injection VulnerabilitiesEPSS 0.4%CVE-2024-24909HIGHDell OpenManage Integration with Microsoft Windows Admin Center contains a Remote Code Execution vulnerability in the gateway plugin. A remoEPSS 0.4%CVE-2022-42906HIGHpowerline-gitstatus (aka Powerline Gitstatus) before 1.3.2 allows arbitrary code execution. git repositories can contain per-repository confEPSS 0.4%CVE-2024-53919HIGHAn injection vulnerability in Barco ClickShare CX-30/20, C-5/10, and ClickShare Bar Pro and Core models, running firmware before 2.21.1, allEPSS 0.4%CVE-2017-12352—A vulnerability in certain system script files that are installed at boot time on Cisco Application Policy Infrastructure Controllers could EPSS 0.4%CVE-2020-3176MEDIUMCisco Remote PHY Device Software Command Injection VulnerabilityEPSS 0.4%CVE-2019-1613MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1613)EPSS 0.4%