Falhas do tipo CWE-77

2.813 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2026-76675CRITICALAuthenticated Command Injection Vulnerability Leads to Privilege Escalation in EdgeConnect SD-WAN GatewaysEPSS 1.5%CVE-2026-44879HIGHAuthenticated Command Injection allows arbitrary command execution in CLI InterfaceEPSS 1.5%CVE-2026-73722HIGHAuthenticated Command Injection Vulnerabilities in HPE Networking Fabric Composer Web-Based Management InterfaceEPSS 1.5%CVE-2026-44865HIGHAuthenticated Command Injection Vulnerabilities in the Web-Based Management Interface of AOS-8 and AOS-10EPSS 1.5%CVE-2026-73766HIGHAuthenticated Command Injection Vulnerabilities in the API Endpoint of AOS-CXEPSS 1.5%CVE-2026-31175CRITICALAn issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunEnaEPSS 1.4%CVE-2026-31170CRITICALAn issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stun-paEPSS 1.4%CVE-2026-3854HIGHRemote code execution via git push option injection in GitHub Enterprise ServerEPSS 1.4%CVE-2025-37176MEDIUMAuthenticated Command Injection Vulnerability in an AOS-8 operating system's internal workflowEPSS 1.4%CVE-2024-21878HIGHCommand Injection through Unsafe File Name Evaluation in internal script in Enphase IQ Gateway v4.x to and including 8.xEPSS 1.4%CVE-2026-93533MEDIUMspatie Scotty Doctor DoctorCommand.php checkRemoteTools os command injectionEPSS 1.4%CVE-2025-55294CRITICALCommand Injection via `format` option in screenshot-desktopEPSS 1.4%CVE-2023-36103HIGHCommand Injection vulnerability in goform/SetIPTVCfg interface of Tenda AC15 V15.03.05.20 allows remote attackers to run arbitrary commands EPSS 1.4%CVE-2023-40146MEDIUMA privilege escalation vulnerability exists in the /bin/login functionality of Peplink Smart Reader v1.2.0 (in QEMU). A specially crafted coEPSS 1.4%CVE-2025-60671MEDIUMA command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconEPSS 1.4%CVE-2023-31996HIGHHanwha IP Camera ANE-L7012R 1.41.01 is vulnerable to Command Injection due to improper sanitization of special characters for the NAS storagEPSS 1.4%CVE-2025-57633CRITICALA command injection vulnerability in FTP-Flask-python through 5173b68 allows unauthenticated remote attackers to execute arbitrary OS commanEPSS 1.4%CVE-2023-34230HIGHSnowflake Connector vulnerable to Command InjectionEPSS 1.4%CVE-2026-24905MEDIUMInspektor Gadget has a Command Injection vulnerability in Makefile.buildEPSS 1.4%CVE-2020-27862HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DVA-2800 and DSL-2888A roEPSS 1.4%