Fallos del tipo CWE-636

57 resultados

Fallback para estado menos seguro em caso de erro

A aplicação, ao encontrar um erro ou falha, recai automaticamente para um modo operacional menos seguro em vez de outras opções disponíveis. Isso pode significar usar algoritmo criptográfico mais fraco, relaxar controles de acesso ou desabilitar verificações de segurança. O risco é que o atacante provoque intencionalmente a falha para forçar a aplicação a operar em modo inseguro.

Ejemplo

Um cliente TLS tenta negociar cifras fortes com o servidor; se falhar, cai para HTTP simples ou SSL 3.0 quebrado. Ou um sistema de autenticação que, ao falhar validação via PKI, aceita login com senha fraca ou até sem autenticação.

Cómo mitigar

Não implemente fallbacks automáticos para modos menos seguros. Se há degradação de segurança, interrompa a operação, registre o evento e alerte o administrador. Garanta que o 'modo seguro' seja a única opção viável, sem alternativas fracas.

CVE-2026-69306HIGHVisual Studio Code Security Feature Bypass VulnerabilityEPSS 0.4%CVE-2026-61595HIGHdjust: Multi-tenant isolation fails open on the WebSocket/SSE path, disclosing other tenants' dataEPSS 0.4%CVE-2026-18329HIGHNGINX ngx_http_js_module vulnerabilityEPSS 0.4%CVE-2026-77560HIGHTinyauth: forward-auth per-app ACL is matched case-sensitively against the (case-insensitive) hostname, letting an authenticated user reach apps they are not on the allowlist forEPSS 0.3%CVE-2026-46482MEDIUMMyBB: Security Question insufficient validationEPSS 0.3%CVE-2026-81379HIGHVisual Studio Code Security Feature Bypass VulnerabilityEPSS 0.3%CVE-2026-40249MEDIUMfree5gc UDR fail-open request handling in PolicyDataSubsToNotifySubsIdPut may allow unintended subscription updates after input errorsEPSS 0.3%CVE-2025-41760MEDIUMPass filter with Empty TableEPSS 0.3%CVE-2025-41759MEDIUMUse of wildcard (“*” or “all”) in Block listEPSS 0.3%CVE-2026-42423HIGHOpenClaw < 2026.4.8 - strictInlineEval Approval Boundary Bypass via Approval-Timeout FallbackEPSS 0.3%CVE-2026-41334HIGHOpenClaw < 2026.3.31 - Decompression Bomb Denial of Service via Image Pixel-Limit Guard BypassEPSS 0.3%CVE-2023-22943MEDIUMModular Input REST API Requests Connect via HTTP after Certificate Validation Failure in Splunk Add-on Builder and Splunk CloudConnect SDKEPSS 0.3%CVE-2026-42246HIGHnet-imap vulnerable to STARTTLS stripping via invalid response timingEPSS 0.3%CVE-2024-2660MEDIUMVault TLS Cert Auth Method Did Not Correctly Validate OCSP ResponsesEPSS 0.3%CVE-2026-62235LOWGrav Flex-Objects < 1.4.3 Authorization Bypass via APIEPSS 0.3%CVE-2026-53712HIGHSCRAM: Silent channel-binding authentication downgrade via unsupported certificate algorithmsEPSS 0.3%CVE-2026-44094HIGHFallback to second RAUC slot with default credentialsEPSS 0.3%CVE-2026-27448LOWpyOpenSSL allows TLS connection bypass via unhandled callback exception in set_tlsext_servername_callbackEPSS 0.2%CVE-2026-92591HIGHCraft CMS 5.0.0 before 5.10.13 Environment Secret Exposure via InstallerEPSS 0.2%CVE-2021-3614MEDIUMA vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevate privileges under cEPSS 0.2%