Weaknesses of type CWE-340

55 results

Geração de números ou identificadores previsíveis

Ocorre quando o software usa um algoritmo fraco ou determinístico para gerar números aleatórios, tokens de sessão ou IDs únicos, permitindo que um atacante preveja os próximos valores. O risco é grave em autenticação, autorização e proteção de dados sensíveis, pois a previsibilidade compromete a segurança de toda a camada de controle de acesso.

Example

Um site gera tokens de sessão baseado em timestamp ou número sequencial: `token = timestamp + contador`. Um atacante observa alguns tokens válidos, identifica o padrão e cria tokens falsos para acessar contas de outros usuários sem credenciais legítimas.

How to mitigate

Use geradores criptograficamente seguros (como `secrets` em Python, `SecureRandom` em Java ou `crypto.getRandomValues()` em JavaScript) para criar tokens, UUIDs e IDs. Nunca use `Math.random()`, `rand()` ou funções baseadas em tempo ou sequência para fins de segurança.

CVE-2026-2439CRITICALConcierge::Sessions versions from 0.8.1 before 0.8.5 for Perl generate insecure session idsEPSS 0.4%CVE-2026-9692MEDIUMMojolicious::Sessions::Storable versions through 0.05 for Perl generate session ids insecurelyEPSS 0.4%CVE-2026-3255MEDIUMHTTP::Session2 versions before 1.12 for Perl may generate weak session ids using the rand() functionEPSS 0.4%CVE-2025-40933HIGHApache::AuthAny::Cookie v0.201 or earlier for Perl generates session ids insecurelyEPSS 0.4%CVE-2026-5082MEDIUMAmon2::Plugin::Web::CSRFDefender versions from 7.00 through 7.03 for Perl generate an insecure session idEPSS 0.4%CVE-2026-40496HIGHFreeScout has Predictable Attachment Token that Allows Unauthenticated Private File Download via Brute ForceEPSS 0.4%CVE-2026-5080MEDIUMDancer::Session::Abstract versions through 1.3522 for Perl generates session ids insecurelyEPSS 0.4%CVE-2025-40925CRITICALStarch versions 0.14 and earlier generate session ids insecurelyEPSS 0.4%CVE-2026-9219HIGHSetracker2 Children's Smartwatch Ecosystem Generation of Predictable Numbers or IdentifiersEPSS 0.3%CVE-2025-40923HIGHPlack-Middleware-Session before version 0.35 for Perl generates session ids insecurelyEPSS 0.3%CVE-2024-12034MEDIUMAdvanced Google reCAPTCHA <= 1.25 - Brute Force Protection IP UnblockEPSS 0.3%CVE-2026-5085CRITICALSolstice::Session versions through 1440 for Perl generates session ids insecurelyEPSS 0.3%CVE-2026-5084MEDIUMWebDyne::Session versions before 3.003_704 for Perl generate the session id insecurelyEPSS 0.3%CVE-2026-75106CRITICALOpnForm Editable Submission Secret Derivation via Empty Hashids SaltEPSS 0.3%CVE-2026-5081CRITICALApache::Session::Generate::ModUniqueId versions from 1.54 through 1.94 for Perl session ids are insecureEPSS 0.3%CVE-2025-62294HIGHPredictable Generation of Password Recovery TokenEPSS 0.3%CVE-2026-47085MEDIUMAn issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. URLAUTH token forgery can occur via a missing mboxkey. If an attacker kEPSS 0.3%CVE-2026-64964MEDIUMGeneration of Predictable Email Confirmation Token in ATutorEPSS 0.3%CVE-2025-14602MEDIUMWeak File Name Generation in vsDeskEPSS 0.3%CVE-2025-40919MEDIUMAuthen::DigestMD5 versions 0.01 through 0.04 for Perl generate the cnonce insecurelyEPSS 0.3%