Fallos del tipo CWE-264

299 resultados

Controle de acesso e privilégios inadequado

A aplicação não valida ou não implementa corretamente as permissões necessárias para acessar recursos sensíveis, permitindo que usuários realizem operações além do seu nível de privilégio autorizado. Isso pode expor dados confidenciais, modificar informações críticas ou comprometer a integridade do sistema.

Ejemplo

Um usuário comum consegue acessar diretamente uma rota administrativa (/admin/users) porque o backend não verifica se ele é administrador antes de executar a ação, apenas confiando que não tentaria; ou um processo de aplicação roda como root quando precisaria rodar como usuário não-privilegiado, ampliando o impacto de qualquer falha.

Cómo mitigar

Implemente validação de privilégios em todas as operações sensíveis (verificar permissões no servidor, nunca só no cliente), use princípio do menor privilégio (processos e contas com permissões mínimas necessárias), e mantenha matriz de controle de acesso (RBAC ou ABAC) consistente e auditada.

CVE-2019-1620CRITICALCisco Data Center Network Manager Arbitrary File Upload and Remote Code Execution VulnerabilityEPSS 83.8%CVE-2020-12028HIGHRockwell Automation FactoryTalk View SEEPSS 53.0%CVE-2017-6622A vulnerability in the web interface for Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to bypass auEPSS 51.4%CVE-2019-1621HIGHCisco Data Center Network Manager Arbitrary File Download VulnerabilityEPSS 29.8%CVE-2019-1978MEDIUMCisco Firepower Threat Defense Software Stream Reassembly Bypass VulnerabilityEPSS 9.4%CVE-2017-6640A vulnerability in Cisco Prime Data Center Network Manager (DCNM) Software could allow an unauthenticated, remote attacker to log in to the EPSS 8.1%CVE-2019-1723CRITICALCisco Common Services Platform Collector Static Credential VulnerabilityEPSS 5.8%CVE-2020-3229HIGHCisco IOS XE Software Web UI Privilege Escalation VulnerabilityEPSS 5.3%CVE-2017-3831A vulnerability in the web-based GUI of Cisco Mobility Express 1800 Series Access Points could allow an unauthenticated, remote attacker to EPSS 4.5%CVE-2018-0293A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attacker to execute CLI coEPSS 3.9%CVE-2018-5468Philips Intellispace Portal all versions 7.0.x and 8.0.x have a remote desktop access vulnerability that could allow an attacker to gain unaEPSS 3.9%CVE-2018-5472Philips Intellispace Portal all versions 7.0.x and 8.0.x have an insecure windows permissions vulnerability that could allow an attacker to EPSS 3.9%CVE-2021-33036Apache Hadoop Privilege escalation vulnerabilityEPSS 3.9%CVE-2020-7352HIGHGOG Galaxy GalaxyClientService Privilege EscalationEPSS 3.8%CVE-2017-6635A vulnerability in the web interface of Cisco Prime Collaboration Provisioning Software (prior to Release 12.1) could allow an authenticatedEPSS 3.6%CVE-2020-3227CRITICALCisco IOx for IOS XE Software Privilege Escalation VulnerabilityEPSS 3.4%CVE-2022-33198CRITICALWordPress Accordions plugin <= 2.0.2 - Unauthenticated WordPress Options Change vulnerabilityEPSS 3.3%CVE-2022-34487CRITICALWordPress Shortcode Addons plugin <= 3.0.2 - Unauthenticated Arbitrary Option Update vulnerabilityEPSS 3.3%CVE-2022-41978HIGHWordPress Zoho CRM Lead Magnet plugin <= 1.7.5.8 - Auth. Arbitrary Options Update vulnerabilityEPSS 3.3%CVE-2017-3832A vulnerability in the web management interface of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacEPSS 3.2%