Fallos del tipo CWE-295

855 resultados

Validação inadequada de certificados SSL/TLS

A aplicação não valida corretamente o certificado SSL/TLS do servidor remoto, aceitando certificados inválidos, expirados ou de domínios diferentes. Isso permite ataques man-in-the-middle onde um atacante intercepta a comunicação mesmo com criptografia, comprometendo a confidencialidade e integridade dos dados.

Ejemplo

Uma API cliente ignora erros de validação de certificado (ex: desabilita verificação de hostname ou ignora exceções de certificado inválido) e faz requisições HTTPS para servidores externos. Um atacante na rede intercepta o tráfego, apresenta seu próprio certificado, e consegue ler dados sensíveis como tokens de autenticação ou credenciais.

Cómo mitigar

Sempre validar certificados: verificar hostname, data de validade e cadeia de confiança. Usar bibliotecas padrão do seu runtime (HttpClient do .NET, requests do Python, etc.) com validação ativada por padrão. Nunca desabilitar validação SSL/TLS em produção; se precisar em desenvolvimento, use variáveis de ambiente e revise criticamente o código antes de deploy.

CVE-2024-20080CRITICALIn gnss service, there is a possible escalation of privilege due to improper certificate validation. This could lead to remote escalation ofEPSS 0.3%CVE-2022-32509HIGHAn issue was discovered on certain Nuki Home Solutions devices. Lack of certificate validation on HTTP communications allows attackers to inEPSS 0.3%CVE-2026-1531HIGHForeman-kubevirt: foreman_kubevirt: man-in-the-middle due to insecure default ssl verificationEPSS 0.3%CVE-2022-40620HIGHFunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS certificates when downEPSS 0.3%CVE-2021-3636It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additionalEPSS 0.3%CVE-2024-29887HIGHServerpod client accepts any certificateEPSS 0.3%CVE-2024-25053MEDIUMIBM Cognos Analytics improper certificate validationEPSS 0.3%CVE-2025-20157MEDIUMCisco Catalyst vManage Certificate Validation VulnerabilityEPSS 0.3%CVE-2022-4895HIGHMan-in-the-middle attack Vulnerability in Hitachi Infrastructure Analytics Advisor, Hitachi Ops Center AnalyzerEPSS 0.3%CVE-2025-6433CRITICALWebAuthn would allow a user to sign a challenge on a webpage with an invalid TLS certificateEPSS 0.3%CVE-2023-33295MEDIUMCohesity DataProtect prior to 6.8.1_u5 or 7.1 was discovered to have a incorrect access control vulnerability due to a lack of TLS CertificaEPSS 0.3%CVE-2023-33760MEDIUMSpliceCom Maximiser Soft PBX v1.5 and before was discovered to utilize a default SSL certificate. This issue can allow attackers to eavesdroEPSS 0.3%CVE-2023-5422HIGHSSL Certificates are not checked for E-Mail HandlingEPSS 0.3%CVE-2022-39948MEDIUMAn improper certificate validation vulnerability [CWE-295] in FortiOS 7.2.0 through 7.2.3, 7.0.0 through 7.0.7, 6.4 all versions, 6.2 all veEPSS 0.3%CVE-2024-35299MEDIUMIn JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate hostname validationEPSS 0.3%CVE-2023-22642MEDIUMAn improper certificate validation vulnerability [CWE-295] in FortiAnalyzer and FortiManager 7.2.0 through 7.2.1, 7.0.0 through 7.0.5, 6.4.8EPSS 0.3%CVE-2024-39312MEDIUMBotan has an Authorization Error due to Name Constraint Decoding BugEPSS 0.3%CVE-2025-67229CRITICALAn improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauthenticated, on-path aEPSS 0.3%CVE-2025-33142MEDIUMIBM WebSphere Application Server information disclosureEPSS 0.3%CVE-2024-42193LOWHCL BigFix Web Reports is susceptible to a Man-In-The-Middle (MITM) attackEPSS 0.3%