Falhas do tipo CWE-77

2.816 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2026-38710HIGHTR1200 v2.4.15 and TR3000 v2.4.21 were discovered to contain a command injection vulnerability in the system.setclock interface. This vulnerEPSS 2.3%CVE-2026-90705MEDIUMD-Link DWR-M921 Boa Dispatch Table formsysCmd os command injectionEPSS 2.3%CVE-2026-90704MEDIUMD-Link DWR-M921 formDiskPartition system command injectionEPSS 2.3%CVE-2026-90706MEDIUMD-Link DWR-M921 formWsc os command injectionEPSS 2.3%CVE-2024-32766CRITICALQTS, QuTS hero, QuTScloudEPSS 2.3%CVE-2023-36457MEDIUM1Panel vulnerable to command injection when adding container repositoriesEPSS 2.3%CVE-2023-36458MEDIUM1Panel vulnerable to ommand injection when entering the container terminalEPSS 2.3%CVE-2020-23583CRITICALOPTILINK OP-XT71000N V2.2 is vulnerable to Remote Code Execution. The issue occurs when the attacker sends an arbitrary code on "/diag_ping_EPSS 2.3%CVE-2026-38715CRITICALInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnEPSS 2.3%CVE-2026-38717CRITICALInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnEPSS 2.3%CVE-2026-38714CRITICALInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnEPSS 2.3%CVE-2026-38716CRITICALInHand Networks IR912 V1.0.0.r20042 and IR915 V1.0.0.r20042 (including earlier versions) were discovered to contain a command injection vulnEPSS 2.3%CVE-2025-6102HIGHWifi-soft UniBox Controller logout.php os command injectionEPSS 2.3%CVE-2026-36983HIGHD-Link DCS-932L v2.18.01 is vulnerable to Command Injection in the function sub_42EF14 of the file /bin/alphapd. The manipulation of the argEPSS 2.3%CVE-2023-25911CRITICALAuthenticated OS Command Injection in Danfoss AK-EM100EPSS 2.3%CVE-2024-28545CRITICALTenda AC18 V15.03.05.05 contains a command injection vulnerablility in the deviceName parameter of formsetUsbUnload function.EPSS 2.3%CVE-2023-49898—Apache StreamPark (incubating): Authenticated system users could trigger remote command executionEPSS 2.3%CVE-2024-50388CRITICALHBS 3 Hybrid Backup SyncEPSS 2.3%CVE-2021-27447CRITICALMesa Labs AmegaView command injectionEPSS 2.3%CVE-2026-86295MEDIUMD-Link DIR-895L udhcpcd serverpacket.c sendACK command injectionEPSS 2.3%