Falhas do tipo CWE-77

2.829 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2024-20365MEDIUMCisco Integrated Management Controller Redfish Command Injection VulnerabilityEPSS 0.9%CVE-2025-37162MEDIUMAuthenticated Command Injection Vulnerability Leading to Arbitrary Remote Command ExecutionEPSS 0.9%CVE-2022-20926MEDIUMA vulnerability in the web management interface of the Cisco Firepower Management Center (FMC) Software could allow an authenticated, remoteEPSS 0.9%CVE-2024-32283HIGHTenda FH1203 V2.0.1.6 firmware has a command injection vulnerablility in formexeCommand function via the cmdinput parameter.EPSS 0.9%CVE-2024-36842HIGHAn issue in Oncord+ Android Infotainment Systems OS Android 12, Model Hardware TS17,Hardware part Number F57L_V3.2_20220301, and Build NumbeEPSS 0.9%CVE-2025-26627HIGHAzure Arc Installer Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-55125HIGHThis vulnerability allows a Backup or Tape Operator to perform remote code execution (RCE) as root by creating a malicious backup configuraEPSS 0.9%CVE-2022-20925MEDIUMA vulnerability in the web management interface of the Cisco Firepower Management Center (FMC) Software could allow an authenticated, remoteEPSS 0.9%CVE-2026-21257HIGHGitHub Copilot and Visual Studio Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-44839MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the CloudSrvUserdataVersionCheck function EPSS 0.9%CVE-2025-44840MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the CloudSrvUserdataVersionCheck function EPSS 0.9%CVE-2025-44845MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTEPSS 0.9%CVE-2025-44848MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the msg_process function via the Url paramEPSS 0.9%CVE-2025-44863MEDIUMTOTOLINK CA300-POE V6.2c.884_B20180522 was found to contain a command injection vulnerability in the msg_process function via the Url parameEPSS 0.9%CVE-2025-44844MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the setUpgradeFW function via the FileNameEPSS 0.9%CVE-2025-44842MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the msg_process function via the Port paraEPSS 0.9%CVE-2025-44860MEDIUMTOTOLINK CA300-POE V6.2c.884_B20180522 was found to contain a command injection vulnerability in the msg_process function via the Port paramEPSS 0.9%CVE-2025-44841MEDIUMTOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the CloudSrvUserdataVersionCheck function EPSS 0.9%CVE-2021-31356HIGHJunos OS Evolved: Multiple shell-injection vulnerabilities in EVO UI wrapper scriptsEPSS 0.9%CVE-2022-36769HIGHIBM Cloud Pak for Data file uploadEPSS 0.9%