Falhas do tipo CWE-77

2.829 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2026-49179HIGHWindows Active Directory Domain Services Remote Code Execution VulnerabilityEPSS 0.9%CVE-2018-0217—A vulnerability in the CLI of the Cisco StarOS operating system for Cisco ASR 5000 Series Aggregation Services Routers could allow an authenEPSS 0.9%CVE-2023-38690MEDIUMmatrix-appservice-irc IRC command injection via admin commands containing newlines EPSS 0.9%CVE-2026-35428CRITICALAzure Cloud Shell Spoofing VulnerabilityEPSS 0.9%CVE-2026-84190HIGHLibreNMS before 26.5.0 Remote Code Execution via AboutControllerEPSS 0.9%CVE-2026-48561CRITICALMicrosoft Edge Copilot Remote Code Execution VulnerabilityEPSS 0.9%CVE-2024-51114HIGHAn issue in Beijing Digital China Yunke Information Technology Co.Ltd v.7.2.6.120 allows a remote attacker to execute arbitrary code via theEPSS 0.9%CVE-2019-1609MEDIUMCisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1609)EPSS 0.9%CVE-2024-42636HIGHDedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile&activepath.EPSS 0.9%CVE-2024-51186HIGHD-Link DIR-820L 1.05b03 was discovered to contain a remote code execution (RCE) vulnerability via the ping_addr parameter in the ping_v4 andEPSS 0.9%CVE-2025-63603MEDIUMA command injection vulnerability exists in the MCP Data Science Server's (reading-plus-ai/mcp-server-data-exploration) 0.1.6 in the safe_evEPSS 0.9%CVE-2024-52308HIGHConnecting to a malicious Codespaces via GH CLI could allow command execution on the user's computerEPSS 0.9%CVE-2023-6071HIGH An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administratorEPSS 0.9%CVE-2019-17101MEDIUMCommand execution due to unsanitized input in Netatmo Smart Indoor Security CameraEPSS 0.9%CVE-2025-6784HIGHCode Engine <= 0.3.5 - Authenticated (Contributor+) Remote Code ExecutionEPSS 0.9%CVE-2020-15685HIGHDuring the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted sEPSS 0.8%CVE-2023-28110MEDIUMJumpServer Koko vulnerable to Command Injection for Kubernetes Connection EPSS 0.8%CVE-2025-46625HIGHLack of input validation/sanitization in the 'setLanCfg' API endpoint in httpd in the Tenda RX2 Pro 16.03.30.14 allows a remote attacker thaEPSS 0.8%CVE-2024-10035CRITICALCode Injection in BG-TEK's CoslatV3EPSS 0.8%CVE-2026-23947CRITICALOrval MCP client is vulnerable to code injection via unsanitized x-enum-descriptions in enum generationEPSS 0.8%