Fallos del tipo CWE-494

187 resultados

Escalação de privilégio

Fraqueza que permite a um atacante ou processo não-autorizado obter permissões superiores àquelas inicialmente concedidas. A aplicação falha em validar ou restringir adequadamente quem pode executar operações sensíveis, permitindo que um usuário comum acesse funcionalidades administrativas ou recursos protegidos.

Ejemplo

Um aplicativo web que não verifica se o usuário logado é realmente um administrador antes de processar requisições para deletar contas ou alterar configurações do sistema. Um atacante autenticado como usuário comum pode forjar uma requisição para /admin/delete-user e conseguir sucesso porque o servidor não valida o nível de privilégio.

Cómo mitigar

Implemente validação rigorosa de autorização em toda operação sensível (não confie apenas em ocultação de interfaces). Use controle de acesso baseado em papéis (RBAC) ou atributos (ABAC), verifique permissões no servidor a cada requisição, e mantenha logs de acessos privilegiados para auditoria.

CVE-2025-11493HIGHSelf-Update Verification Mechanism Process in ConnectWise AutomateEPSS 0.2%CVE-2019-9534The Cobham EXPLORER 710, firmware version 1.07, does not validate its firmware imageEPSS 0.2%CVE-2026-82021CRITICALHermes Agent 0.18.2 < 0.19.0 MCP Catalog Supply Chain RCE via Mutable Branch ReferenceEPSS 0.2%CVE-2024-50696HIGHSunGrow WiNet-S V200.001.00.P025 and earlier versions is missing integrity checks for firmware upgrades. Sending a specific MQTT message allEPSS 0.2%CVE-2026-65097HIGHNVIDIA NemoClaw for Linux contains a vulnerability in its installation scripts, where an attacker could cause a download of code without intEPSS 0.2%CVE-2024-52331HIGHECOVACS lawnmowers and vacuums deterministic firmware encryption keyEPSS 0.2%CVE-2026-50562CRITICALFastGPT: Untrusted PR artifacts are pushed and deployed by privileged preview workflowsEPSS 0.2%CVE-2025-53520HIGHEG4 Electronics EG4 Inverters Download of Code Without Integrity CheckEPSS 0.2%CVE-2023-45821MEDIUMIncorrect Docker Hub registry check in Artifact HubEPSS 0.2%CVE-2024-52583HIGHWesHacks code includes links to Leostop tracking spyware infested filesEPSS 0.2%CVE-2026-93534MEDIUMspatie Scotty Self Update SelfUpdater.php update code downloadEPSS 0.2%CVE-2026-57910CRITICALWatchGuard Agent improper authentication allows unauthenticated remote code executionEPSS 0.2%CVE-2025-40604MEDIUMDownload of Code Without Integrity Check Vulnerability in the SonicWall Email Security appliance loads root filesystem images without verifyEPSS 0.2%CVE-2025-9319HIGHA potential vulnerability was reported in the Lenovo Wallpaper Client that could allow arbitrary code execution under certain conditions.EPSS 0.2%CVE-2026-32148HIGHLockfile checksums not verified in Hex allows dependency integrity bypassEPSS 0.2%CVE-2026-55697HIGHpnpm: Repository-controlled configDependencies can select a pacquet native install engineEPSS 0.2%CVE-2024-43169HIGHIBM Engineering Requirements Management DOORS Next file downloadEPSS 0.2%CVE-2026-79963HIGHDell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Download of Code WEPSS 0.2%CVE-2025-55581HIGHD-Link DCS-825L firmware version 1.08.01 and possibly prior versions contain an insecure implementation in the mydlink-watch-dog.sh script. EPSS 0.2%CVE-2021-47986HIGHParse Server - Unreviewed Code Execution via Malicious Version TagsEPSS 0.2%