Falhas do tipo CWE-78

4.669 resultados

Injeção de comando do sistema operacional

A aplicação constrói comandos do SO usando dados de entrada do usuário sem sanitização adequada, permitindo que um atacante injete comandos adicionais. Quando o comando é executado, instruções maliciosas do atacante rodam com os privilégios da aplicação, comprometendo o servidor.

Exemplo

Um script PHP que executa `system('ping ' . $_GET['host'])` sem validar o parâmetro. Um atacante passa `8.8.8.8; rm -rf /` e consegue deletar arquivos do servidor, não apenas fazer ping.

Como mitigar

Sempre valide e sanitize entrada de usuário; prefira APIs seguras (como funções que aceitam argumentos separados em vez de strings de comando); execute com menor privilégio necessário; use listas brancas de valores permitidos quando possível.

CVE-2023-20015MEDIUMCisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection VulnerabilityEPSS 0.2%CVE-2025-12737HIGHArbitrary Code Execution via Administrative Operations in Multiple WSO2 Products Allows Remote Code ExecutionEPSS 0.2%CVE-2026-0383HIGHInformation disclosure in Brocade Fabric OS before 9.2.1c2, 9.2.2 through 9.2.2a and 10.0.0EPSS 0.2%CVE-2026-85013HIGHEnvironment-modules: command injection in environment-modules bash completion via malicious module names containing shell metacharactersEPSS 0.2%CVE-2026-71551HIGHSuper Productivity: Arbitrary OS Command Execution via IPC EXEC Handler with Persistent WhitelistEPSS 0.2%CVE-2026-43990HIGHJunoClaw: plugin-shell shell-metacharacter injection via shell wrapperEPSS 0.2%CVE-2026-78630MEDIUMImproper Input Neutralization in Okta Access Gateway SNMP Configuration ProcessingEPSS 0.2%CVE-2025-37129MEDIUMAuthenticated Remote Code Execution allows Exploit in Scripts FeatureEPSS 0.2%CVE-2021-41228HIGHCode injection in `saved_model_cli`EPSS 0.2%CVE-2026-16875HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.2%CVE-2026-45136HIGHclaude-code-cache-fix: Local code execution via Python triple-quote injection in tools/quota-statusline.shEPSS 0.2%CVE-2026-31996LOWOpenClaw < 2026.2.19 - safeBins stdin-only bypass via sort output and recursive grep flagsEPSS 0.2%CVE-2026-57586HIGHCodeRAG: Gradle Wrapper Execution During Dependency Discovery Enables Arbitrary Code ExecutionEPSS 0.2%CVE-2021-35032MEDIUMA vulnerability in the 'libsal.so' of the Zyxel GS1900 series firmware version 2.60 could allow an authenticated local user to execute arbitEPSS 0.2%CVE-2025-67640MEDIUMJenkins Git client Plugin 6.4.0 and earlier does not not correctly escape the path to the workspace directory as part of an argument in a teEPSS 0.2%CVE-2026-14881HIGHCompass connection import allows to override OIDC browser open command (usually set through settings), allowing for arbitrary shell commands execution when connecting to cluster using OIDC auth flowEPSS 0.2%CVE-2026-25933MEDIUMArduino App Lab has Improper Data Validation in Internal Terminal InterfaceEPSS 0.2%CVE-2025-58374HIGHRoo Code: Auto-approve allows npm install execution of malicious postinstall scriptsEPSS 0.2%CVE-2026-71538HIGH@cyclonedx/cyclonedx-npm: Shell Injection via Unsanitized --workspace Argument on WindowsEPSS 0.2%CVE-2026-46606HIGHGlances: Command Injection via KVM/QEMU VM Domain Names in glances/plugins/vms/engines/virsh.pyEPSS 0.2%