LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

command-injection-rce - Command Injection to RCE Proof

Verify suspected OS command injection using OAST callbacks and demonstrate follow-on impact safely.

Tags

Updated: 2026-09-16

Capabilities

Typical Inputs

Typical Outputs

What this skill does

  • Confirm shell metacharacter behavior
  • Verify execution via OAST callback
  • Demonstrate safe follow-on impact
  • Report command injection finding

Inputs

  • Suspected target parameters
  • Recorded HTTP requests
  • OAST canary domain

Outputs

  • Critical finding report
  • Saved proof note
  • Updated plan status

Requirements

  • Access to OAST service
  • Allowed security testing tools

Source

  • Spec: SKILL.md
command-injection
rce
oast
cwe-78
cwe-77
Confirm shell metacharacter behavior
Verify execution via OAST callback
Demonstrate safe follow-on impact
Report command injection finding
Suspected target parameters
Recorded HTTP requests
OAST canary domain
Critical finding report
Saved proof note
Updated plan status