Weaknesses of type CWE-264

299 results

Controle de acesso e privilégios inadequado

A fraqueza ocorre quando a aplicação não valida corretamente quem pode fazer o quê, permitindo que usuários acessem recursos ou executem operações acima de seus privilégios. Isso acontece porque as verificações de autorização são ausentes, incompletas ou contornáveis, expondo dados sensíveis ou permitindo ações não autorizadas.

Example

Um usuário comum consegue listar ou modificar dados de outros usuários alterando um ID na URL (ex: /profile/123 → /profile/999) sem que o servidor valide se ele tem permissão para acessar aquele perfil. Ou um atacante executa ações administrativas porque a aplicação só verifica autenticação, não autorização.

How to mitigate

Implemente verificações de autorização em toda operação sensível: valide não apenas se o usuário está logado, mas se ele tem permissão específica para aquele recurso. Use listas de controle de acesso (ACL), roles bem definidas e princípio do menor privilégio. Teste sistematicamente tentativas de escalação e acesso lateral entre usuários.

CVE-2022-34487CRITICALWordPress Shortcode Addons plugin <= 3.0.2 - Unauthenticated Arbitrary Option Update vulnerabilityEPSS 3.3%CVE-2022-41978HIGHWordPress Zoho CRM Lead Magnet plugin <= 1.7.5.8 - Auth. Arbitrary Options Update vulnerabilityEPSS 3.3%CVE-2017-3819A privilege escalation vulnerability in the Secure Shell (SSH) subsystem in the StarOS operating system for Cisco ASR 5000 Series, ASR 5500 EPSS 3.3%CVE-2017-12226A vulnerability in the web-based Wireless Controller GUI of Cisco IOS XE Software for Cisco 5760 Wireless LAN Controllers, Cisco Catalyst 45EPSS 3.3%CVE-2017-3832A vulnerability in the web management interface of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacEPSS 3.2%CVE-2018-0152A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote attacker to gain elevEPSS 3.2%CVE-2017-12230A vulnerability in the web-based user interface (web UI) of Cisco IOS XE 16.2 could allow an authenticated, remote attacker to elevate theirEPSS 3.2%CVE-2018-0417HIGHCisco Wireless LAN Controller Software GUI Privilege Escalation VulnerabilityEPSS 3.2%CVE-2017-6713A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to gain fulEPSS 2.9%CVE-2018-7505In Advantech WebAccess versions V8.2_20170817 and prior, WebAccess versions V8.3.0 and prior, WebAccess Dashboard versions V.2.0.15 and prioEPSS 2.8%CVE-2018-0330A vulnerability in the NX-API management application programming interface (API) in devices running, or based on, Cisco NX-OS Software couldEPSS 2.8%CVE-2019-1889HIGHCisco Application Policy Infrastructure Controller REST API Privilege Escalation VulnerabilityEPSS 2.8%CVE-2018-13801A vulnerability has been identified in ROX II (All versions < V2.12.1). An attacker with network access to port 22/tcp and valid low-privileEPSS 2.7%CVE-2018-0432Cisco SD-WAN Solution Privilege Escalation VulnerabilityEPSS 2.6%CVE-2018-0317A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalaEPSS 2.6%CVE-2018-0322A vulnerability in the web management interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attackeEPSS 2.6%CVE-2018-0213A vulnerability in the credential reset functionality for Cisco Identity Services Engine (ISE) could allow an authenticated, remote attackerEPSS 2.5%CVE-2018-0336A vulnerability in the batch provisioning feature of Cisco Prime Collaboration Provisioning could allow an authenticated, remote attacker toEPSS 2.4%CVE-2019-1855HIGHCisco Jabber for Windows DLL Preloading VulnerabilityEPSS 2.3%CVE-2018-0440Cisco Data Center Network Manager Privilege Escalation to Underlying Operating System VulnerabilityEPSS 2.3%