Falhas do tipo CWE-77

2.829 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2025-43714MEDIUMThe ChatGPT system through 2025-03-30 performs inline rendering of SVG documents (instead of, for example, rendering them as text inside a cEPSS 0.6%CVE-2026-73712HIGHUnauthenticated Remote Code Execution in HPE Networking Fabric Composer APIEPSS 0.6%CVE-2024-48015MEDIUMDell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special ElementsEPSS 0.6%CVE-2025-64419CRITICALCoolify vulnerable to command injection via docker-compose.yaml parametersEPSS 0.6%CVE-2014-9114HIGHBlkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code.EPSS 0.6%CVE-2025-41250HIGHHeader injection vulnerabilityEPSS 0.6%CVE-2022-45095MEDIUM Dell PowerScale OneFS, 8.2.x-9.4.x, contain a command injection vulnerability. An authenticated user having access local shell and having tEPSS 0.6%CVE-2025-57164MEDIUMFlowise through v3.0.4 is vulnerable to remote code execution via unsanitized evaluation of user input in the "Supabase RPC Filter" field.EPSS 0.6%CVE-2023-33298—com.perimeter81.osx.HelperTool in Perimeter81 10.0.0.19 on macOS allows Local Privilege Escalation (to root) via shell metacharacters in usiEPSS 0.6%CVE-2019-1893HIGHCisco Enterprise NFV Infrastructure Software Command Injection VulnerabilityEPSS 0.6%CVE-2025-66738HIGHAn issue in Yealink T21P_E2 Phone 52.84.0.15 allows a remote normal privileged attacker to execute arbitrary code via a crafted request the EPSS 0.6%CVE-2024-0005CRITICALA condition exists in FlashArray and FlashBlade Purity whereby a malicious user could execute arbitrary commands remotely through a specificEPSS 0.6%CVE-2021-31357HIGHJunos OS Evolved: shell-injection vulnerabilities in evo_tcpdump UI wrapper scriptEPSS 0.6%CVE-2025-25692MEDIUMA PHAR deserialization vulnerability in the _getHeaders function of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a craftEPSS 0.6%CVE-2025-43012HIGHIn JetBrains Toolbox App before 2.6 command injection in SSH plugin was possibleEPSS 0.6%CVE-2026-72736CRITICALDokploy: OS Command Injection in registry credential testing and Swarm cluster management → HOST RCEEPSS 0.6%CVE-2020-1980HIGHPAN-OS: Shell injection vulnerability in PAN-OS CLI allows execution of shell commandsEPSS 0.6%CVE-2024-40445HIGHA directory traversal vulnerability in forkosh Mime TeX before version 1.77 allows attackers on Windows systems to read or append arbitrary EPSS 0.6%CVE-2021-31358HIGHJunos OS Evolved: shell-injection vulnerabilities in evo_sftp UI wrapper scriptEPSS 0.6%CVE-2024-28041HIGHHGW BL1500HM Ver 002.001.013 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary command.EPSS 0.6%