Fallos del tipo CWE-78

4652 resultados

Injeção de Comando do Sistema Operacional

A aplicação constrói comandos do SO (shell, cmd.exe, etc.) usando dados de entrada do usuário ou de fontes externas sem validar ou sanitizar adequadamente. Um atacante consegue injetar metacaracteres especiais (como ;, |, &, `, $()) para executar comandos arbitrários além daqueles originalmente planejados.

Ejemplo

Uma API que executa `ping hostname` recebendo o hostname como parâmetro GET faz isso: `exec('ping ' + request.query.host)`. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Cómo mitigar

Evite construir comandos concatenando strings com entrada externa — use bibliotecas que parametrizem comandos ou listas de argumentos (como execFile no Node.js, subprocess com lista em Python, ProcessBuilder em Java). Se for inevitável, valide contra uma whitelist rígida e, se disponível, use modo restrito do shell (sh -c com argumentos seguros) ou contenha a execução em sandbox/container.

CVE-2025-46117CRITICALAn issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.EPSS 0.8%CVE-2026-18268HIGHKenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation VulnerabilityEPSS 0.8%CVE-2024-25579MEDIUMOS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to exeEPSS 0.8%CVE-2026-41208HIGHPaperclip: Privilege Escalation via Agent-Controlled workspaceStrategy.provisionCommand Leading to OS Command ExecutionEPSS 0.8%CVE-2024-22372MEDIUMOS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with an administrative privilege to exeEPSS 0.8%CVE-2022-20655HIGHA vulnerability in the implementation of the CLI on a device that is running ConfD could allow an authenticated, local attacker to perform aEPSS 0.8%CVE-2024-20277MEDIUMA vulnerability in the web-based management interface of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allEPSS 0.8%CVE-2023-21411HIGHNon-sanitized user input could lead to arbitrary code execution during Access Control configuration in AXIS License Plate VerifierEPSS 0.8%CVE-2025-54958MEDIUMPowered BLUE 870 versions 0.20130927 and prior contain an OS command injection vulnerability. If this vulnerability is exploited, arbitrary EPSS 0.8%CVE-2023-21410HIGHNon-sanitized user input could lead to arbitrary code execution in AXIS License Plate VerifierEPSS 0.8%CVE-2024-10019MEDIUMPath Traversal and OS Command Injection in parisneo/lollms-webuiEPSS 0.8%CVE-2026-0302LOWCheckov by Prisma Cloud: OS Command Injection VulnerabilityEPSS 0.8%CVE-2023-49235CRITICALAn issue was discovered in libremote_dbg.so on TRENDnet TV-IP1314PI 5.5.3 200714 devices. Filtering of debug information is mishandled durinEPSS 0.8%CVE-2023-33238HIGHCommand-injection Vulnerability in Certificate ManagementEPSS 0.8%CVE-2026-43685HIGHA Remote Code Execution vulnerability in Claris FileMaker Cloud allowed a user with Admin Console privileges to inject arbitrary operating sEPSS 0.8%CVE-2026-14958CRITICALOS command injection in IBM Aspera FaspexEPSS 0.8%CVE-2023-46117CRITICALInadequate validation of retrieved subdomains may lead to a Remote Code Execution in reconFTWEPSS 0.8%CVE-2019-16639CRITICALAn issue was found on the Ruijie EG-2000 series gateway. There is a newcli.php API interface without access control, which can allow an attaEPSS 0.8%CVE-2026-44194CRITICALOPNsense: RCE on user managmentEPSS 0.8%CVE-2026-46735HIGHDell Display and Peripheral Manager (DDPM Mac), versions prior to 2.3, contain an Improper Neutralization of Special Elements used in an OS EPSS 0.8%