Home > CQE List >
CQE-9006: OS Command Execution (Draft 0.9)
CQE Glossary Definition
CQE-9006: OS Command Execution
OS Command Execution
[an error occurred while processing this directive]
Definition in a New Window
Practice ID: 9006
Maturity: Preliminary
Description
Description Summary
OS Command Control
Extended Description
Software unaware of OS command control incurs the risk of unauthorized command execution, possibly used to disable the software, or possibly leading to unauthorized read and modify data access.