Falhas do tipo CWE-294

213 resultados

Exposição de informações sensíveis a atores não autorizados

Fraqueza na qual dados sensíveis (credenciais, chaves, PII, tokens) são acessíveis por usuários ou processos que não deveriam ter acesso. Ocorre por falhas em controle de acesso, armazenamento inadequado ou transmissão desprotegida, permitindo vazamento ou roubo dessas informações.

Exemplo

Uma aplicação grava tokens de autenticação em logs em texto plano acessíveis via endpoint público, ou armazena senhas sem hash em banco de dados com permissões leitura aberta. Um atacante consegue ler essas credenciais e impersonar usuários legítimos.

Como mitigar

Implemente controle de acesso rigoroso baseado em papéis (RBAC/ABAC), criptografe dados sensíveis em repouso e em trânsito (TLS, AES), nunca registre credenciais em logs, e revise regularmente permissões de arquivos e endpoints para garantir que apenas atores autorizados acessem informações críticas.

CVE-2026-73312CRITICALXenForo < 2.3.13 Refresh Token Replay via Expired Access TokenEPSS 0.4%CVE-2026-56453MEDIUMHCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability.EPSS 0.4%CVE-2020-35473MEDIUMAn information leakage vulnerability in the Bluetooth Low Energy advertisement scan response in Bluetooth Core Specifications 4.0 through 5.EPSS 0.4%CVE-2026-32987CRITICALOpenClaw < 2026.3.13 - Bootstrap Setup Code Replay via Device PairingEPSS 0.4%CVE-2026-53424CRITICALMissing one-time-use enforcement in Samly allows replay of SAML bearer assertionsEPSS 0.3%CVE-2024-38284HIGHAuthentication Bypass by Capture-replay in Motorola Solutions Vigilant Fixed LPR Coms Box (BCAV1F2-C600)EPSS 0.3%CVE-2024-8260MEDIUMOPA SMB Force-AuthenticationEPSS 0.3%CVE-2024-46041HIGHIoT Haat Smart Plug IH-IN-16A-S v5.16.1 is vulnerable to Authentication Bypass by Capture-replay.EPSS 0.3%CVE-2023-39373HIGH Hyundai car CWE-294: Authentication Bypass by Capture-replay EPSS 0.3%CVE-2026-32053MEDIUMOpenClaw < 2026.2.23 - Twilio Webhook Replay Bypass via Randomized Event ID NormalizationEPSS 0.3%CVE-2026-55370MEDIUMLogto: TOTP code can be replayed within the RFC 6238 validity window (one-time use violation)EPSS 0.3%CVE-2026-41351MEDIUMOpenClaw < 2026.3.31 - Webhook Replay Detection Bypass via Base64 Signature Re-encodingEPSS 0.3%CVE-2026-35141LOWHCL DFXAnalytics is affected by a Login Replay Attack vulnerabilityEPSS 0.3%CVE-2026-54148HIGHhttp4k: `DigestAuthProvider.verify` did not bind to request URIEPSS 0.3%CVE-2025-35057MEDIUMNewforma Info Exchange (NIX) forced NTLMv2 authentication via /RemoteWeb/IntegrationServices.ashxEPSS 0.3%CVE-2026-69206MEDIUMHttp4s: DigestAuth allows replay of captured requestsEPSS 0.3%CVE-2026-55759HIGHRocket.Chat: Apple Sign-In skips JWT claims validation, allowing expired and cross-audience token replayEPSS 0.3%CVE-2024-37016MEDIUMMengshen Wireless Door Alarm M70 2024-05-24 allows Authentication Bypass via a Capture-Replay approach.EPSS 0.3%CVE-2025-8616MEDIUMMalicious browser plugins may cause Authentication replay attack vulnerability to bypass authentication in OpenText Advanced AuthenticationEPSS 0.3%CVE-2026-27855MEDIUMDovecot OTP authentication is vulnerable to replay attack under specific conditions. If auth cache is enabled, and username is altered in paEPSS 0.3%