Fallos del tipo CWE-295

852 resultados

Validação inadequada de certificados SSL/TLS

A aplicação não valida corretamente o certificado SSL/TLS do servidor remoto, aceitando certificados inválidos, expirados ou de domínios diferentes. Isso permite ataques man-in-the-middle onde um atacante intercepta a comunicação mesmo com criptografia, comprometendo a confidencialidade e integridade dos dados.

Ejemplo

Uma API cliente ignora erros de validação de certificado (ex: desabilita verificação de hostname ou ignora exceções de certificado inválido) e faz requisições HTTPS para servidores externos. Um atacante na rede intercepta o tráfego, apresenta seu próprio certificado, e consegue ler dados sensíveis como tokens de autenticação ou credenciais.

Cómo mitigar

Sempre validar certificados: verificar hostname, data de validade e cadeia de confiança. Usar bibliotecas padrão do seu runtime (HttpClient do .NET, requests do Python, etc.) com validação ativada por padrão. Nunca desabilitar validação SSL/TLS em produção; se precisar em desenvolvimento, use variáveis de ambiente e revise criticamente o código antes de deploy.

CVE-2023-34410MEDIUMAn issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does noEPSS 0.7%CVE-2019-3751MEDIUMDell EMC Enterprise Copy Data Management (eCDM) versions 1.0, 1.1, 2.0, 2.1, and 3.0 contain a certificate validation vulnerability. An unauEPSS 0.7%CVE-2021-25633Content Manipulation with Double Certificate AttackEPSS 0.7%CVE-2024-23273MEDIUMThis issue was addressed through improved state management. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4.EPSS 0.7%CVE-2021-32727MEDIUMEnd-to-end encryption device setup did not verify public keyEPSS 0.7%CVE-2020-3557MEDIUMCisco Firepower Management Center Software Denial of Service VulnerabilityEPSS 0.7%CVE-2024-8096MEDIUMOCSP stapling bypass with GnuTLSEPSS 0.7%CVE-2018-4849A vulnerability has been identified in Siveillance VMS Video for Android (All versions < V12.1a (2018 R1)), Siveillance VMS Video for iOS (AEPSS 0.7%CVE-2020-27648HIGHImproper certificate validation vulnerability in OpenVPN client in Synology DiskStation Manager (DSM) before 6.2.3-25426-2 allows man-in-theEPSS 0.7%CVE-2020-27649HIGHImproper certificate validation vulnerability in OpenVPN client in Synology Router Manager (SRM) before 1.2.4-8081 allows man-in-the-middle EPSS 0.7%CVE-2017-13105Hi Security Virus Cleaner - Antivirus, Booster, 3.7.1.1329, 2017-09-13, Android application accepts all SSL certificates during SSL communicationEPSS 0.7%CVE-2019-3685HIGHMissing TLS certificate validation for HTTPS connections in oscEPSS 0.7%CVE-2022-33682MEDIUMDisabled Hostname Verification makes Brokers, Proxies vulnerable to MITM attackEPSS 0.7%CVE-2021-25634Timestamp Manipulation with Signature WrappingEPSS 0.7%CVE-2023-49250HIGHApache DolphinScheduler: Insecure TLS TrustManager used in HttpUtilEPSS 0.7%CVE-2021-21385HIGHDisabled hostname verification and accepting self-signed certificatesEPSS 0.7%CVE-2022-33681MEDIUMImproper Hostname Verification in Java Client and Proxy can expose authentication data via MITMEPSS 0.7%CVE-2022-39264HIGHnheko vulnerable to secret poisoning using MITM on secret requests by the homeserverEPSS 0.7%CVE-2022-22549HIGHDell PowerScale OneFS, 8.2.x-9.3.x, contains a Improper Certificate Validation. A unauthenticated remote attacker could potentially exploit EPSS 0.7%CVE-2026-5787HIGHAn Improper Certificate Validation in Ivanti EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0.1 allows a remote unauthenticated attacker EPSS 0.7%