Falhas do tipo CWE-78
4.645 resultadosInjeção de comando do sistema operacional
A aplicação constrói comandos do SO usando dados de entrada do usuário sem sanitização adequada, permitindo que um atacante injete comandos adicionais. Quando o comando é executado, instruções maliciosas do atacante rodam com os privilégios da aplicação, comprometendo o servidor.
Exemplo
Um script PHP que executa `system('ping ' . $_GET['host'])` sem validar o parâmetro. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.
Como mitigar
Sempre valide e sanitize entrada de usuário; prefira APIs seguras (como funções que aceitam argumentos separados em vez de strings de comando); execute com menor privilégio necessário; use listas brancas de valores permitidos quando possível.
CVE-2023-41352HIGHChunghwa Telecom NOKIA G-040W-Q - Command InjectionEPSS 1.2%CVE-2026-73164HIGHNozomi Networks Labs identified a CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulneraEPSS 1.2%CVE-2025-9176MEDIUMneurobin shc Environment Variable shc.c make os command injectionEPSS 1.2%CVE-2026-45630CRITICALDokploy: Authenticated Remote Code Execution via Command Injection in updateTraefikConfig Echo StatementEPSS 1.2%CVE-2025-20055CRITICALOS command injection vulnerability exists in network storage servers STEALTHONE D220/D340 provided by Y'S corporation. An attacker who can aEPSS 1.2%CVE-2020-5282HIGHarbitrary shell execution in Nick Chan BotEPSS 1.2%CVE-2026-27957HIGHCoolify: Authenticated RCE via command injection in CA certificate management featureEPSS 1.2%CVE-2026-42307MEDIUMVim: OS Command Injection in netrwEPSS 1.2%CVE-2024-20295HIGHA vulnerability in the CLI of the Cisco Integrated Management Controller (IMC) could allow an authenticated, local attacker to perform commaEPSS 1.2%CVE-2024-34205HIGHTOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the download_firmware function.EPSS 1.2%CVE-2026-41451HIGHUAC < 3.3.0 Command Injection via User Substitution in parse_artifact.shEPSS 1.2%CVE-2024-3781CRITICALOS Command Injection vulnerability in WBSAirbackEPSS 1.2%CVE-2024-6333HIGHAuthenticated Remote Code Execution in Altalink, Versalink & WorkCentre ProductsEPSS 1.2%CVE-2023-40145HIGHWeintek cMT3000 HMI Web CGI OS Command InjectionEPSS 1.2%CVE-2022-29843MEDIUMWestern Digital My Cloud OS 5 devices Command Injection VulnerabilityEPSS 1.2%CVE-2024-42741HIGHIn TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setL2tpServerCfgEPSS 1.2%CVE-2026-35216CRITICALBudibase: Unauthenticated Remote Code Execution via Webhook Trigger and Bash Automation StepEPSS 1.2%CVE-2024-9200HIGHA post-authentication command injection vulnerability in the "host" parameter of the diagnostic function in Zyxel VMG4005-B50A firmware versEPSS 1.2%CVE-2025-60957CRITICALOS Command Injection vulnerability in EndRun Technologies Sonoma D12 Network Time Server (GPS) F/W 6010-0071-000 Ver 4.00 allows attackers tEPSS 1.2%CVE-2026-34977CRITICALAperi'Solve Affected by Unauthenticated RCE via JPSeek Analyzer CommandEPSS 1.2%