Falhas do tipo CWE-77

2.831 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2021-0253HIGHJunos OS: NFX Series: Local Command Execution Vulnerability in JDMD Leads to Privilege EscalationEPSS 0.5%CVE-2025-24861HIGHOutback Power Mojave Inverter Command InjectionEPSS 0.5%CVE-2020-11073HIGHRemote Code Execution in Autoswitch Python VirtualenvEPSS 0.5%CVE-2024-38641HIGHQTS, QuTS heroEPSS 0.5%CVE-2026-26133HIGHM365 Copilot Information Disclosure VulnerabilityEPSS 0.5%CVE-2026-44257CRITICALefw4.X: RCE via zipslipEPSS 0.5%CVE-2025-9161HIGHRockwell Automation FactoryTalk Optix Remote Code Execution VulnerabilityEPSS 0.5%CVE-2026-42000MEDIUMInsufficient Validation of Names During AXFREPSS 0.5%CVE-2026-48116HIGHAnythingLLM: RCE via ripgrep --pre argument injection in filesystem-search-files agent skillEPSS 0.5%CVE-2022-35503HIGHImproper verification of a user input in Open Source MANO v7-v12 allows an authenticated attacker to execute arbitrary code within the LCM mEPSS 0.5%CVE-2026-73704HIGHAuthenticated Command Injection Leading to Administrative Access in HPE Networking Fabric Composer APIEPSS 0.5%CVE-2021-38120MEDIUMRemote Code Execution using Bash command Injection in backup scheduling functionality in NetIQ Advance AuthenticationEPSS 0.5%CVE-2021-0252HIGHJunos OS: NFX Series: Local Code Execution Vulnerability in JDMD Leads to Privilege EscalationEPSS 0.5%CVE-2025-29157MEDIUMAn issue in petstore v.1.0.7 allows a remote attacker to execute arbitrary code via accessing a non-existent endpoint/cart, the server returEPSS 0.5%CVE-2022-37704MEDIUMAmanda 3.5.1 allows privilege escalation from the regular user backup to root. The SUID binary located at /lib/amanda/rundump will execute /EPSS 0.5%CVE-2025-52365HIGHA command injection vulnerability in the szc script of the ccurtsinger/stabilizer repository allows remote attackers to execute arbitrary syEPSS 0.5%CVE-2024-44383HIGHWAYOS FBM-291W v19.09.11 is vulnerable to Command Execution via msp_info_htm.EPSS 0.5%CVE-2024-12251HIGHImproper neutralization special element in hyperlinksEPSS 0.5%CVE-2026-53533MEDIUMaiosmtplib: SMTP command injection via CR/LF in sender/recipient addressEPSS 0.5%CVE-2026-55145MEDIUMOutlook Copilot Tampering VulnerabilityEPSS 0.5%