Falhas do tipo CWE-77

2.816 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2026-10871HIGHShibby Tomato Web UI rc start_6rd_tunnel os command injectionEPSS 2.2%CVE-2026-36734HIGHEDIMAX BR-6428nS V3 1.15 is vulnerable to Command Injection. An authenticated attacker with access to the network can submit crafted input tEPSS 2.2%CVE-2026-2629MEDIUMjishi node-sonos-http-api TTS Provider mac-os.js Promise os command injectionEPSS 2.2%CVE-2025-53355HIGHmcp-server-kubernetes vulnerable to command injection in several toolsEPSS 2.2%CVE-2026-82678MEDIUMdiem-project diem Administrative Console actions.class.php executeCommand os command injectionEPSS 2.2%CVE-2026-90788MEDIUMmagicblack MacCMS10 Template .%40template%40default%40html%40label.html os command injectionEPSS 2.2%CVE-2026-39054HIGHOinone Pamirs 7.0.0 contains a command injection vulnerability in CommandHelper.executeCommands. The method starts a shell process and writeEPSS 2.2%CVE-2026-7446MEDIUMVetCoders mcp-server-semgrep MCP index.ts create_rule os command injectionEPSS 2.2%CVE-2026-82668MEDIUMklaussilveira GitList Git Command Line CommandLine.php getDefaultBranch os command injectionEPSS 2.2%CVE-2026-90843MEDIUMSabyasachiRana WebMap New Nmap Scan functions_nmap.py nmap_newscan os command injectionEPSS 2.2%CVE-2026-13538MEDIUMWavlink WL-NU516U1-A POST Parameter wireless.cgi sub_401D68 command injectionEPSS 2.2%CVE-2025-57285CRITICALcodeceptjs 3.7.3 contains a command injection vulnerability in the emptyFolder function (lib/utils.js). The execSync command directly concatEPSS 2.2%CVE-2025-61492CRITICALA command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary comEPSS 2.2%CVE-2026-49199CRITICALPredator Connect W6x: RCE via MQTTEPSS 2.2%CVE-2022-34820HIGHA vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions < V3.3.46), SIMATIC CP 1243-1 (All versions < V3.3.46), SIMATIC CPEPSS 2.2%CVE-2021-4304MEDIUMeprintsug ulcc-core toolbox command injectionEPSS 2.1%CVE-2023-29803CRITICALTOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the pid parameter in the disconnectVPN EPSS 2.1%CVE-2025-8937MEDIUMTOTOLINK N350R formSysCmd command injectionEPSS 2.1%CVE-2026-1596MEDIUMD-Link DWR-M961 formLtefotaUpgradeQuectel sub_419920 command injectionEPSS 2.1%CVE-2026-90617MEDIUMGH05TCREW PentestAgent MCP HTTP Server main.py run_task os command injectionEPSS 2.1%