Glossary

Command Injection

A vulnerability that allows executing arbitrary system commands on the server through unsanitized user input. Command injection occurs when an application passes user data directly to a system shell (exec, system, popen). It gives full server access and constitutes a critical flaw.

Related Pages

Other Terms

Need an external review of your HR SaaS?

Share your product, stack, and client context. We will come back with the right review scope.

Discuss your audit