Falhas do tipo CWE-77

2.825 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2025-57282HIGHngrok v4.3.3 and 5.0.0-beta.2 is vulnerable to Command Injection.EPSS 1.0%CVE-2025-63749MEDIUMpnetlab 5.3.11 is vulnerable to Command Injection via the qemu_options parameter.EPSS 1.0%CVE-2024-42947CRITICALAn issue in the handler function in /goform/telnet of Tenda FH1201 v1.2.0.14 (408) allows attackers to execute arbitrary commands via a crafEPSS 1.0%CVE-2023-23917HIGHA prototype pollution vulnerability exists in Rocket.Chat server <5.2.0 that could allow an attacker to a RCE under the admin account. Any uEPSS 1.0%CVE-2024-44574HIGHRELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_conf function.EPSS 1.0%CVE-2024-31811HIGHTOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remote code execution (RCE) vulnerability via the langType parameter in thEPSS 1.0%CVE-2025-4231HIGHPAN-OS: Authenticated Admin Command Injection Vulnerability in the Management Web InterfaceEPSS 1.0%CVE-2024-44572HIGHRELY-PCIe v22.2.1 to v23.1.0 was discovered to contain a command injection vulnerability via the sys_mgmt function.EPSS 1.0%CVE-2023-36755CRITICALA vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versions < V2.16.0), RUGGEEPSS 1.0%CVE-2026-30310CRITICALIn its design for automatic terminal command execution, Sixth offers two options: Execute safe commands and Execute all commands. The descriEPSS 1.0%CVE-2025-3008MEDIUMNovastar CX40 NetFilter Utility netconfig popen command injectionEPSS 1.0%CVE-2023-5878CRITICALOneWireless command injection possible when updating firmwareEPSS 1.0%CVE-2023-21778HIGHMicrosoft Dynamics Unified Service Desk Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-41281MEDIUMQTS, QuTS hero, QuTScloudEPSS 1.0%CVE-2023-41282MEDIUMQTS, QuTS hero, QuTScloudEPSS 1.0%CVE-2023-41283MEDIUMQTS, QuTS hero, QuTScloudEPSS 1.0%CVE-2026-24168MEDIUMNVIDIA UFM Enterprise contains a vulnerability in the IBDiagnet API where an authenticated attacker with administrative privileges may causeEPSS 1.0%CVE-2023-47563HIGHVideo StationEPSS 1.0%CVE-2025-58358HIGHMarkdownify is vulnerable to command injection through pptx-to-markdown toolEPSS 1.0%CVE-2021-4406CRITICALAuthenticated Remote COmmand Execution as root in OSNEXUS QuantaStor version 6.0.0.355 and othersEPSS 1.0%