Falhas do tipo CWE-78

4.647 resultados

Injeção de comando do sistema operacional

A aplicação constrói comandos do SO usando dados de entrada do usuário sem sanitização adequada, permitindo que um atacante injete comandos adicionais. Quando o comando é executado, instruções maliciosas do atacante rodam com os privilégios da aplicação, comprometendo o servidor.

Exemplo

Um script PHP que executa `system('ping ' . $_GET['host'])` sem validar o parâmetro. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Como mitigar

Sempre valide e sanitize entrada de usuário; prefira APIs seguras (como funções que aceitam argumentos separados em vez de strings de comando); execute com menor privilégio necessário; use listas brancas de valores permitidos quando possível.

CVE-2026-78430MEDIUMsworddut mcp-ffmpeg-helper Tool handlers.ts handleToolCall os command injectionEPSS 1.1%CVE-2026-5125MEDIUMraine consult-llm-mcp server.ts child_process.execSync os command injectionEPSS 1.1%CVE-2026-16735MEDIUMrelease-it conventional-changelog Changelog File index.js writeChangelog os command injectionEPSS 1.1%CVE-2026-5602MEDIUMNor2-io heim-mcp new_heim_application tools.ts registerTools os command injectionEPSS 1.1%CVE-2026-16630MEDIUMsyncfusion ej2-javascript-ui-controls package.json child_process.exec os command injectionEPSS 1.1%CVE-2026-15193MEDIUMAidanPark openclaw-android Android WebView Bridge JsBridge.kt os command injectionEPSS 1.1%CVE-2026-16628MEDIUMoclif JIT Plugin Entry child_process.exec os command injectionEPSS 1.1%CVE-2026-16629MEDIUMdanger danger-js CLI localGetFileAtSHA.ts danger.git.diffForFile os command injectionEPSS 1.1%CVE-2026-81562MEDIUMAlexGladkov claude-in-mobile client.ts execSync os command injectionEPSS 1.1%CVE-2026-16631MEDIUMpublint package-manager pack.js child_process.exec os command injectionEPSS 1.1%CVE-2026-15669MEDIUMlouisho5 picobot exec Tool exec.go ExecTool.Execute os command injectionEPSS 1.1%CVE-2026-5007MEDIUMkazuph mcp-docs-rag add_git_repository/add_text_file index.ts cloneRepository os command injectionEPSS 1.1%CVE-2026-5603MEDIUMelgentos magento2-dev-mcp index.ts executeMagerun2Command os command injectionEPSS 1.1%CVE-2026-3959MEDIUM0xKoda WireMCP Tshark CLI index.js server.tool os command injectionEPSS 1.1%CVE-2026-16489MEDIUMjsforce SFDX Connection Registry sfdx.js _execCommand os command injectionEPSS 1.1%CVE-2024-42747HIGHIn TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWanIeCfg. AutEPSS 1.1%CVE-2026-85656HIGHOS command injection in Amazon log4j-cve-2021-44228-hotpatchEPSS 1.1%CVE-2026-25855HIGHOpenBullet2 0.3.2 Authenticated RCE via FileProxySource Script UploadEPSS 1.1%CVE-2026-15895HIGHOS command injection in jsii-diff in AWS jsiiEPSS 1.1%CVE-2026-49819CRITICALUpSnap - Unauthenticated Initial-Superuser Takeover Chains to Root RCE via wake_cmdEPSS 1.1%