Fallos del tipo CWE-1220

115 resultados

Controle de acesso com granularidade insuficiente

A aplicação implementa controle de acesso, mas em nível muito grosseiro — por exemplo, libera acesso a um módulo inteiro quando deveria controlar operações específicas dentro dele. Assim, um usuário autorizado a ler dados consegue também deletá-los ou modificá-los, ampliando indevidamente suas permissões.

Ejemplo

Um painel administrativo verifica se o usuário é 'gerente', mas não valida se esse gerente pode apagar usuários específicos ou apenas consultá-los. O atacante autenticado como gerente executa operações não permitidas porque a verificação foi feita só no acesso ao módulo, não em cada ação.

Cómo mitigar

Implemente controle de acesso por atributo ou papel (RBAC/ABAC) que valide permissões em cada operação sensível, não apenas na entrada do módulo. Use listas de controle de acesso (ACL) específicas para cada recurso e ação (criar, ler, atualizar, deletar).

CVE-2025-35998HIGHMissing protection mechanism for alternate hardware interface in the Intel(R) Quick Assist Technology for some Intel(R) Platforms within RinEPSS 0.2%CVE-2025-31961LOWHCL Connections is vulnerable to broken access controlEPSS 0.2%CVE-2025-8306MEDIUMImproper Access Control in Asseco Infomedica PlusEPSS 0.2%CVE-2024-53295HIGHDell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerability. A local maliciousEPSS 0.1%CVE-2025-48514MEDIUMInsufficient Granularity of Access Control in SEV firmware can allow a privileged attacker to create a SEV-ES Guest to attack SNP guest, potEPSS 0.1%CVE-2025-48517MEDIUMInsufficient Granularity of Access Control in SEV firmware could allow a privileged user with a malicious hypervisor to create a SEV-ES guesEPSS 0.1%CVE-2024-21947HIGHImproper input validation in the system management mode (SMM) could allow a privileged attacker to overwrite arbitrary memory potentially reEPSS 0.1%CVE-2024-21971MEDIUMImproper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a kernel-mode driver, rEPSS 0.1%CVE-2026-40145HIGHControl protections bypass in BeyondTrust Endpoint Privilege Management (Windows deployment) support utilityEPSS 0.1%CVE-2024-21962HIGHImproper Input Validation in the AMD RAID driver could allow an attacker to point to an arbitrary memory location potentially resulting in pEPSS 0.1%CVE-2021-46747HIGHInsufficient granularity of access control in ASP (AMD Secure Processor) may allow an attacker with an untrusted user space application to mEPSS 0.1%CVE-2024-33058HIGHInsufficient Granularity of Access Control in CoreEPSS 0.1%CVE-2026-15431HIGHHP Support Assistant – Potential Escalation of PrivilegeEPSS 0.1%CVE-2026-20107MEDIUMCisco Application Policy Infrastructure Controller Denial of Service VulnerabilityEPSS 0.1%CVE-2025-31938MEDIUMInsufficient granularity of access control in some subsystem for some Intel(R) Xeon(R) 6 Scalable processors with Intel(R) TDX may allow an EPSS 0.1%