Fallos del tipo CWE-90

78 resultados

Injeção LDAP

Ocorre quando uma aplicação constrói uma consulta LDAP incluindo entrada do usuário sem sanitização adequada. Um atacante pode injetar caracteres e sintaxe LDAP especiais para modificar a lógica da consulta, contornando autenticação, extraindo dados não autorizados ou alterando estruturas de diretório.

Ejemplo

Um formulário de login que monta a query como `(uid=*)(|(uid=admin` sem escapar caracteres especiais. Um atacante entra `*)(|(uid=` no campo de usuário, alterando a consulta para sempre retornar verdadeiro e ganhando acesso de admin.

Cómo mitigar

Use funções nativas de escape LDAP da sua linguagem ou biblioteca (como `LdapName` em Java, ou filtros parametrizados quando disponíveis). Valide e liste permissões de entrada esperada — caracteres como `*`, `(`, `)`, `\` e nulo devem ser bloqueados ou escapados rigorosamente.

CVE-2025-52575MEDIUMEspoCRM vulnerable to LDAP Injection through Improper Neutralization of Special ElementsEPSS 0.7%CVE-2026-44930MEDIUMApache CXF: LDAP Injection vulnerability in XKMS LDAP RepositoryEPSS 0.7%CVE-2026-25560HIGHWeKan < 8.19 LDAP Authentication Filter InjectionEPSS 0.7%CVE-2026-33289HIGHSuiterCRM has LDAP Filter Injection in Authentication ModuleEPSS 0.7%CVE-2023-6905MEDIUMJahastech NxFilter Bind Request ldap injectionEPSS 0.7%CVE-2025-48208HIGHApache HertzBeat (incubating): Jmx JNDI injection vulnerabilityEPSS 0.6%CVE-2026-11748MEDIUMA vulnerability has been identified in centraldogma-server-auth-shiro versions prior to 0.84.0, where the SearchFirstActiveDirectoryRealm suEPSS 0.6%CVE-2026-40459HIGHLDAP Injection in PAC4JEPSS 0.6%CVE-2026-46619CRITICALOpenAM Authentication Bypass via MSISDN LDAP InjectionEPSS 0.6%CVE-2026-46745MEDIUMApache Airflow FAB provider: LDAP Filter Injection in FAB Auth Manager _search_ldap reachable via /auth/tokenEPSS 0.6%CVE-2026-75020HIGHApache APISIX: ldap-auth plugin cross-subtree identity impersonationEPSS 0.5%CVE-2023-3447HIGHActive Directory Integration / LDAP Integration <= 4.1.5 - Authenticated (Subscriber+) LDAP InjectionEPSS 0.5%CVE-2026-11770HIGH389-ds-base: 389-ds-base: pre-auth ldap filter injection in cleanallruv status checkEPSS 0.5%CVE-2026-0636MEDIUMLDAP Injection Vulnerability in LDAPStoreHelper.javaEPSS 0.5%CVE-2026-13696HIGHLDAP Injection in HAVELSAN's Liman MYSEPSS 0.5%CVE-2026-44617MEDIUMApache Zeppelin: LDAP filter injection in LdapRealm — incomplete fix of CVE-2024-31867EPSS 0.5%CVE-2024-56841CRITICALA vulnerability has been identified in Mendix LDAP (All versions < V1.1.2). Affected versions of the module are vulnerable to LDAP injectionEPSS 0.5%CVE-2026-49268HIGHApache Shiro: LDAP DN Injection in DefaultLdapRealmEPSS 0.5%CVE-2023-31025MEDIUMCVEEPSS 0.5%CVE-2026-44671HIGHZITADEL: LDAP Filter Injection in Login FlowEPSS 0.5%