Falhas do tipo CWE-77

2.837 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2024-27763MEDIUMXPixelGroup BasicSR through 1.4.2 might locally allow code execution in contrived situations where "scontrol show hostname" is executed in tEPSS 0.2%CVE-2026-27001HIGHOpenClaw: Unsanitized CWD path injection into LLM promptsEPSS 0.2%CVE-2026-76339MEDIUMSPL Injection through the geostats Command in Splunk EnterpriseEPSS 0.2%CVE-2025-52687LOWJavaScript Injection Vulnerability in the OmniAccess Stellar Web Management InterfaceEPSS 0.2%CVE-2025-6522MEDIUMTrendMakers Sight Bulb Pro Command InjectionEPSS 0.2%CVE-2026-43990HIGHJunoClaw: plugin-shell shell-metacharacter injection via shell wrapperEPSS 0.2%CVE-2025-26237HIGHD-Link DI-7001 MINI_5G 19.10.31A1 contains a code execution vulnerability in the flag parameter of msp_info, which can be exploited to run aEPSS 0.2%CVE-2023-40396HIGHThe issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, watchOS 10, tvOS 17. AnEPSS 0.2%CVE-2023-36642MEDIUMAn improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiTester 3.0.0EPSS 0.2%CVE-2026-20169MEDIUMCisco IoT Field Network Director Command Injection VulnerabilityEPSS 0.2%CVE-2024-57695HIGHAn issue in Agnitum Outpost Security Suite 7.5.3 (3942.608.1810) and 7.6 (3984.693.1842) allows a local attacker to execute arbitrary code vEPSS 0.2%CVE-2026-57453MEDIUMVim: PowerShell Command Injection via Unescaped Filename in zip.vim ExtractionEPSS 0.2%CVE-2026-72913HIGHKitty: Command injection into the child shell via chained @kitty-echo + @kitty-ssh DCS escape sequencesEPSS 0.2%CVE-2025-5265MEDIUMPotential local code execution in “Copy as cURL” commandEPSS 0.2%CVE-2022-39086MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%CVE-2022-39087MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%CVE-2022-39082MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%CVE-2022-39084MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%CVE-2022-39081MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%CVE-2022-39083MEDIUMIn network service, there is a missing permission check. This could lead to local escalation of privilege with System execution privileges nEPSS 0.2%