Fallos del tipo CWE-203

350 resultados

Discrepância Observável em Respostas

A aplicação revela informações sensíveis através de diferenças detectáveis em seu comportamento, tempo de resposta ou mensagens de erro — por exemplo, retornando erros diferentes para usuário inexistente vs. senha incorreta. Um atacante pode explorar essas pistas para inferir dados confidenciais sem acesso direto.

Ejemplo

Um sistema de login que responde 'Usuário não encontrado' em 100ms, mas 'Senha incorreta' em 500ms (após validação). Um invasor enumera contas válidas medindo latência, ou identifica emails registrados pela velocidade da resposta.

Cómo mitigar

Padronize respostas de erro (mesma mensagem genérica), normalize tempos de execução com delays constantes, e evite vazar informações estruturais (ex: 'este email já existe'). Auditoria de logs e timestamps também revelar quem tentou enumerar dados sensíveis.

CVE-2023-50782HIGHPython-cryptography: bleichenbacher timing oracle attack against rsa decryption - incomplete fix for cve-2020-25659EPSS 1.1%CVE-2022-24043A vulnerability has been identified in Desigo DXR2 (All versions < V01.21.142.5-22), Desigo PXC3 (All versions < V01.21.142.4-18), Desigo PXEPSS 1.1%CVE-2021-29446MEDIUMPadding Oracle Attack due to Observable Timing Discrepancy in jose-node-cjs-runtimeEPSS 1.1%CVE-2021-29445MEDIUMPadding Oracle Attack due to Observable Timing Discrepancy in jose-node-esm-runtimeEPSS 1.1%CVE-2021-29444MEDIUMPadding Oracle Attack due to Observable Timing Discrepancy in jose-browser-runtimeEPSS 1.1%CVE-2024-23771CRITICALdarkhttpd before 1.15 uses strcmp (which is not constant time) to verify authentication, which makes it easier for remote attackers to bypasEPSS 1.1%CVE-2022-0569MEDIUMObservable Discrepancy in snipe/snipe-itEPSS 1.0%CVE-2021-34575HIGHInformation Exposure in mymbCONNECT24, mbCONNECT24 <= 2.8.0EPSS 1.0%CVE-2024-21208LOWVulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: NetworkEPSS 1.0%CVE-2020-15237MEDIUMTiming attack in ShrineEPSS 1.0%CVE-2022-27221MEDIUMA vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). An attacker in machine-in-the-middle could obtainEPSS 1.0%CVE-2024-23218MEDIUMA timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. This issue is fixed in EPSS 1.0%CVE-2024-23342HIGHpython-ecdsa vulnerable to Minerva attack on P-256EPSS 1.0%CVE-2023-6240MEDIUMKernel: marvin vulnerability side-channel leakage in the rsa decryption operationEPSS 1.0%CVE-2024-21484HIGHVersions of the package jsrsasign before 11.0.0 are vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP decryption process. EPSS 1.0%CVE-2024-25189CRITICALlibjwt 1.15.3 uses strcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timingEPSS 1.0%CVE-2022-21659MEDIUMObservable Response Discrepancy in Flask-AppBuilderEPSS 1.0%CVE-2020-15151HIGHObservable Timing Discrepancy in OpenMage LTSEPSS 0.9%CVE-2024-30171MEDIUMAn issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes EPSS 0.9%CVE-2024-25190CRITICALl8w8jwt 2.2.1 uses memcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timingEPSS 0.9%