Weaknesses of type CWE-294

213 results

Exposição de informação sensível a usuário não autorizado

A aplicação expõe dados sensíveis (senhas, tokens, PII, chaves API) para alguém que não deveria ter acesso. Isso ocorre por falha de controle de acesso, logging inadequado, erro em configuração ou vazamento em comunicação desprotegida. O risco é direto: credenciais ou dados privados caem em mãos erradas.

Example

Um endpoint de API retorna o hash de senha do usuário na resposta JSON, ou um arquivo de configuração com credenciais de banco de dados fica acessível publicamente no repositório git, ou um log de erro exibe o token de autenticação completo na tela do usuário final.

How to mitigate

Implemente controle de acesso baseado em papéis (RBAC/ABAC); nunca exponha segredos em respostas HTTP, logs ou versionamento; use variáveis de ambiente para credenciais; valide e sanitize erros antes de retornar ao cliente; revise regularmente permissões de arquivos e endpoints.

CVE-2023-46892HIGHThe radio frequency communication protocol being used by Meross MSH30Q 4.5.23 is vulnerable to replay attacks, allowing attackers to record EPSS 0.3%CVE-2026-73431HIGHReusable Account Activation and Recovery Tokens Allow Repeated Account Takeover in vulnerability-lookupEPSS 0.3%CVE-2026-28787HIGHOneUptime has WebAuthn 2FA bypass: server accepts client-supplied challenge instead of server-stored value, allowing credential replayEPSS 0.3%CVE-2026-12704MEDIUMSAML assertion replay via skipped InResponseTo validationEPSS 0.3%CVE-2026-73443MEDIUMOn affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement and replay it indefEPSS 0.3%CVE-2025-36593HIGHDell OpenManage Network Integration, versions prior to 3.8, contains an Authentication Bypass by Capture-replay vulnerability in the RADIUS EPSS 0.3%CVE-2021-46835MEDIUMThere is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijEPSS 0.3%CVE-2025-47706MEDIUMEnterprise MFA - TFA for Drupal - Moderately critical - Access bypass - SA-CONTRIB-2025-052EPSS 0.3%CVE-2025-68671MEDIUMlakeFS is Missing Timestamp Validation in S3 Gateway AuthenticationEPSS 0.3%CVE-2026-88278CRITICALGV-LPCLPC2011/2211 - ONVIF WS-Security PasswordDigest ReplayEPSS 0.3%CVE-2026-28449MEDIUMOpenClaw < 2026.2.25 - Webhook Replay Attack via Missing Durable Replay SuppressionEPSS 0.3%CVE-2024-38823LOWCVE-2024-38823 Salt AdvisoryEPSS 0.3%CVE-2026-41707HIGHSpring Security DPoPProofJwtDecoderFactory vulnerable to DPoP Proof ReplayEPSS 0.3%CVE-2024-12137HIGHAuthentication Bypass in Elfatek Elektronics' ANKA JPD-00028EPSS 0.3%CVE-2026-30080HIGHOpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection. Configuration has supported integrity NIA1 and NIA2EPSS 0.3%CVE-2023-33854MEDIUMMultiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Warehouse on Cloud Pak for Data.EPSS 0.3%CVE-2025-48012MEDIUMOne Time Password - Moderately critical - Access bypass - SA-CONTRIB-2025-063EPSS 0.3%CVE-2026-13734MEDIUMZephyr WireGuard mutates peer state before anti-replay check, enabling capture-replay endpoint hijackEPSS 0.2%CVE-2023-20123MEDIUMCisco Duo Authentication for macOS and Duo Authentication for Windows Logon Offline Credentials Replay VulnerabilityEPSS 0.2%CVE-2025-61479HIGHAn issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker to cause a denial ofEPSS 0.2%