Falhas do tipo CWE-78

4.653 resultados

Injeção de comando do sistema operacional

A aplicação constrói comandos do SO usando dados de entrada do usuário sem sanitização adequada, permitindo que um atacante injete comandos adicionais. Quando o comando é executado, instruções maliciosas do atacante rodam com os privilégios da aplicação, comprometendo o servidor.

Exemplo

Um script PHP que executa `system('ping ' . $_GET['host'])` sem validar o parâmetro. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Como mitigar

Sempre valide e sanitize entrada de usuário; prefira APIs seguras (como funções que aceitam argumentos separados em vez de strings de comando); execute com menor privilégio necessário; use listas brancas de valores permitidos quando possível.

CVE-2026-25130CRITICALCybersecurity AI vulnerable to command Injection through argument injection in find_file Agent toolEPSS 0.9%CVE-2026-44604HIGHRpm: command injection in rpmuncompress dountar() via unescaped archive top-level directory name in popen() shell commandEPSS 0.9%CVE-2026-71284HIGHFledge IoT Gateway Backup Restore OS Command Injection via Tar Member FilenameEPSS 0.9%CVE-2026-1459HIGHA post-authentication command injection vulnerability in the TR-369 certificate download CGI program of the Zyxel VMG3625-T50B firmware versEPSS 0.9%CVE-2025-67172HIGHRiteCMS v3.1.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the parse_special_tags() function.EPSS 0.9%CVE-2024-22033MEDIUMobs-service-download_url is vulnerable to argument injectionEPSS 0.9%CVE-2024-24892HIGHUnauthorized RCE in migration-toolsEPSS 0.9%CVE-2023-50207HIGHD-Link G416 flupl filename Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50200HIGHD-Link G416 cfgsave backusb Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50213HIGHD-Link G416 nodered File Handling Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2021-21530HIGHDell OpenManage Enterprise-Modular (OME-M) versions prior to 1.30.00 contain a security bypass vulnerability. An authenticated malicious useEPSS 0.9%CVE-2023-50217HIGHD-Link G416 awsfile rm Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50201HIGHD-Link G416 cfgsave upusb Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50202HIGHD-Link G416 flupl pythonmodules Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50216HIGHD-Link G416 awsfile tar File Handling Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50206HIGHD-Link G416 flupl query_type edit Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-50205HIGHD-Link G416 awsfile chmod Command Injection Remote Code Execution VulnerabilityEPSS 0.9%CVE-2026-33648HIGHAVideo Vulnerable to OS Command Injection via Unsanitized `users_id` and `liveTransmitionHistory_id` in Restreamer Log File PathEPSS 0.9%CVE-2025-5743HIGHCWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remEPSS 0.9%CVE-2023-39471HIGHTP-Link TL-WR841N ated_tp Command Injection Remote Code Execution VulnerabilityEPSS 0.9%