Falhas do tipo CWE-77

2.818 resultados

Injeção de comando

O software monta comandos do sistema ou de interpretadores (shell, SQL, etc.) usando dados que vêm de fora (entrada do usuário, requisição HTTP, arquivo) sem sanitizar ou sanitizando incorretamente caracteres especiais. Um atacante consegue 'fechar' o comando legítimo e injetar comandos arbitrários que serão executados com os mesmos privilégios da aplicação.

Exemplo

Um script que executa `ping` no endereço fornecido pelo usuário: `system('ping ' + user_input)`. Se o usuário digita `8.8.8.8; rm -rf /`, o comando executado vira dois: primeiro o ping, depois a deleção de arquivos. A maioria das CVEs de injeção de comando vêm deste padrão.

Como mitigar

Use APIs que aceitam argumentos como lista (não concatenação de strings) — ex: subprocess.run(['ping', user_input]) em Python ou parameterized queries em banco de dados. Se precisar de interpretador, valide rigorosamente a entrada com lista branca (aceita apenas IP/domínio válido) e evite shells intermediários.

CVE-2024-38486HIGHDell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x , contain(s) an Improper Neutralization of Special ElemenEPSS 1.2%CVE-2026-38945HIGHCommand injection in Raynet rvia version 12.6 Update 8 and previous versions allows adversaries to execute arbitrary code via a crafted pathEPSS 1.2%CVE-2026-13501MEDIUMantlr ANTLR4 gofmt GoTarget.java GoTarget command injectionEPSS 1.2%CVE-2022-32664HIGHIn Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilegeEPSS 1.2%CVE-2022-32203CRITICALThere is a command injection vulnerability in Huawei terminal printer product. Successful exploitation could result in the highest privilegeEPSS 1.2%CVE-2025-28017MEDIUMTOTOLINK A800R V4.1.2cu.5032_B20200408 is vulnerable to Command Injection in downloadFile.cgi via the QUERY_STRING parameter.EPSS 1.2%CVE-2025-50526CRITICALNetgear EX8000 V1.0.0.126 was discovered to contain a command injection vulnerability via the switch_status function.EPSS 1.2%CVE-2025-57685HIGHThe LB-Link routers, including the BL-AC2100_AZ3 V1.0.4, BL-WR4000 v2.5.0, BL-WR9000_AE4 v2.4.9, BL-AC1900_AZ2 v1.0.2, BL-X26_AC8 v1.2.8, anEPSS 1.2%CVE-2024-44916HIGHVulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/adminEPSS 1.2%CVE-2026-7039HIGHtufantunc ssh-mcp index.ts shell.write command injectionEPSS 1.2%CVE-2024-38896MEDIUMWAVLINK WN551K1 found a command injection vulnerability through the start_hour parameter of /cgi-bin/nightled.cgi.EPSS 1.2%CVE-2025-27083HIGHAuthenticated Command Injection Vulnerabilities in AOS-10 GW and AOS-8 Controller/Mobility Conductor Web-Based Management InterfaceEPSS 1.2%CVE-2021-22867—Unsafe configuration options in GitHub Pages leading to path traversal on GitHub Enterprise ServerEPSS 1.2%CVE-2025-46428HIGHDell SmartFabric OS10 Software, versions prior to 10.6.1.0, contain an Improper Neutralization of Special Elements used in a Command ('CommEPSS 1.2%CVE-2025-44867MEDIUMTenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetNetCheckTools function via the hostName parameterEPSS 1.2%CVE-2024-6333HIGHAuthenticated Remote Code Execution in Altalink, Versalink & WorkCentre ProductsEPSS 1.2%CVE-2025-44865MEDIUMTenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetDebugCfg function via the enable parameter. This EPSS 1.2%CVE-2025-44864MEDIUMTenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetDebugCfg function via the module parameter. This EPSS 1.2%CVE-2025-44866MEDIUMTenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetDebugCfg function via the level parameter. This vEPSS 1.2%CVE-2024-23049CRITICALAn issue in symphony v.3.6.3 and before allows a remote attacker to execute arbitrary code via the log4j component.EPSS 1.2%