Falhas do tipo CWE-78

4.669 resultados

Injeção de comando do sistema operacional

A aplicação constrói comandos do SO usando dados de entrada do usuário sem sanitização adequada, permitindo que um atacante injete comandos adicionais. Quando o comando é executado, instruções maliciosas do atacante rodam com os privilégios da aplicação, comprometendo o servidor.

Exemplo

Um script PHP que executa `system('ping ' . $_GET['host'])` sem validar o parâmetro. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Como mitigar

Sempre valide e sanitize entrada de usuário; prefira APIs seguras (como funções que aceitam argumentos separados em vez de strings de comando); execute com menor privilégio necessário; use listas brancas de valores permitidos quando possível.

CVE-2024-4696HIGHA privilege escalation vulnerability was reported in Lenovo Service Bridge prior to version 5.0.2.17 that could allow operating system commaEPSS 0.4%CVE-2025-22495HIGHAn improper input validation vulnerability was discovered in the NTP server configuration field of the Network-M2 card. This could result inEPSS 0.4%CVE-2025-30097MEDIUMDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.0.10, LTS2024 releasEPSS 0.4%CVE-2025-30098MEDIUMDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.0.10, LTS2024 releasEPSS 0.4%CVE-2026-13248HIGHAuthenticated Remote Code Execution via Arbitrary File Write in the Intermec Fingerprint Command InterfaceEPSS 0.4%CVE-2020-3173HIGHCisco UCS Manager Software Local Management CLI Command Injection VulnerabilityEPSS 0.4%CVE-2025-30096MEDIUMDell PowerProtect Data Domain with Data Domain Operating System (DD OS) of Feature Release versions 7.7.1.0 through 8.1.0.10, LTS2024 releasEPSS 0.4%CVE-2026-81539HIGHDataStage on Cloud Pak for Data has several vulnerabilitiesEPSS 0.4%CVE-2025-14754HIGHIBM Cloud Pak for Data is vulnerable to OS command injectionEPSS 0.4%CVE-2026-12161HIGHImproper input validation in the SSH Elevate Shell feature allows an authenticated user with permission to create or modify a shared SSH enEPSS 0.4%CVE-2025-58370HIGHRoo Code: Potential Remote Code Execution via Bash Parameter Expansion and Indirect ReferenceEPSS 0.4%CVE-2022-35642MEDIUM"IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScriptEPSS 0.4%CVE-2026-71451MEDIUM- OS Command Injection vulnerability in Johnson Controls EasyIO FS32 allows - Command Injection. This issue affects EasyIO FS32: before 3.0EPSS 0.4%CVE-2019-12717MEDIUMCisco NX-OS Software Virtualization Manager Command Injection VulnerabilityEPSS 0.4%CVE-2026-20283MEDIUMCisco Identity Services Engine IPSec Open API Command Injection VulnerabilityEPSS 0.4%CVE-2026-78229MEDIUMImage Scanner Driver for Linux contains an OS command injection vulnerability. An attacker who can log in to a Linux system where the affectEPSS 0.4%CVE-2024-51246HIGHIn Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doEPSS 0.4%CVE-2026-39417MEDIUMMaxKB: RCE via MCP stdio command injection in workflow engineEPSS 0.4%CVE-2026-76561HIGHPki-core: dogtag/pki: certprofile-import allows code execution via unsanitized profile content (externalprocessconstraint)EPSS 0.4%CVE-2024-48954MEDIUMAn issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authenticated user leads to ReEPSS 0.4%