Fallos del tipo CWE-78

4622 resultados

Injeção de Comando do Sistema Operacional

A aplicação constrói comandos do SO (shell, cmd.exe, etc.) usando dados de entrada do usuário ou de fontes externas sem validar ou sanitizar adequadamente. Um atacante consegue injetar metacaracteres especiais (como ;, |, &, `, $()) para executar comandos arbitrários além daqueles originalmente planejados.

Ejemplo

Uma API que executa `ping hostname` recebendo o hostname como parâmetro GET faz isso: `exec('ping ' + request.query.host)`. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Cómo mitigar

Evite construir comandos concatenando strings com entrada externa — use bibliotecas que parametrizem comandos ou listas de argumentos (como execFile no Node.js, subprocess com lista em Python, ProcessBuilder em Java). Se for inevitável, valide contra uma whitelist rígida e, se disponível, use modo restrito do shell (sh -c com argumentos seguros) ou contenha a execução em sandbox/container.

CVE-2021-34352HIGHCommand Injection Vulnerability in QVREPSS 1.5%CVE-2023-31198HIGHOS command injection vulnerability exists in Wi-Fi AP UNIT allows. If this vulnerability is exploited, a remote authenticated attacker with EPSS 1.5%CVE-2024-50374CRITICALA CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the followingEPSS 1.5%CVE-2024-50370CRITICALA CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the followingEPSS 1.5%CVE-2023-28742HIGHBIG-IP iQuery mesh vulnerabilityEPSS 1.5%CVE-2022-27489HIGHA improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiExtender 7.0.0 through 7.0.3, EPSS 1.5%CVE-2023-2091HIGHKylinSoft youker-assistant adjust_cpufreq_scaling_governer os command injectionEPSS 1.5%CVE-2024-27516CRITICALServer-Side Template Injection (SSTI) vulnerability in livehelperchat before 4.34v, allows remote attackers to execute arbitrary code and obEPSS 1.5%CVE-2026-25195HIGHCopeland XWEB and XWEB Pro OS Command InjectionEPSS 1.5%CVE-2021-34351CRITICALCommand Injection Vulnerability in QVREPSS 1.5%CVE-2021-34348CRITICALCommand Injection Vulnerability in QVREPSS 1.5%CVE-2021-38685CRITICALCommand Injection Vulnerability in VioStorEPSS 1.5%CVE-2026-23774HIGHDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.5, LTS2025 release verEPSS 1.5%CVE-2025-59844HIGHArgument injection vulnerability in SonarQube Scan ActionEPSS 1.5%CVE-2024-31476HIGHMultiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilitiEPSS 1.5%CVE-2024-31477HIGHMultiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilitiEPSS 1.5%CVE-2020-26284HIGHHugo can execute a binary from the current directory on WindowsEPSS 1.5%CVE-2026-24697HIGHAn OS command injection vulnerability exists in the start_bonjour() function of the "rc" binary in Cisco RV130/RV130W with firmware 1.0.3.55EPSS 1.5%CVE-2026-24698HIGHAn OS command injection vulnerability exists in the save_syslog_to_file() function of the "httpd" binary in Cisco RV130/RV130W with firmwareEPSS 1.5%CVE-2026-24699HIGHAn OS command injection vulnerability exists in the sub_34984() function of the "rc" binary in Cisco RV130/RV130W with firmware 1.0.3.55 andEPSS 1.5%