Falhas do tipo CWE-294

213 resultados

Exposição de informações sensíveis a atores não autorizados

Fraqueza na qual dados sensíveis (credenciais, chaves, PII, tokens) são acessíveis por usuários ou processos que não deveriam ter acesso. Ocorre por falhas em controle de acesso, armazenamento inadequado ou transmissão desprotegida, permitindo vazamento ou roubo dessas informações.

Exemplo

Uma aplicação grava tokens de autenticação em logs em texto plano acessíveis via endpoint público, ou armazena senhas sem hash em banco de dados com permissões leitura aberta. Um atacante consegue ler essas credenciais e impersonar usuários legítimos.

Como mitigar

Implemente controle de acesso rigoroso baseado em papéis (RBAC/ABAC), criptografe dados sensíveis em repouso e em trânsito (TLS, AES), nunca registre credenciais em logs, e revise regularmente permissões de arquivos e endpoints para garantir que apenas atores autorizados acessem informações críticas.

CVE-2026-73431HIGHReusable Account Activation and Recovery Tokens Allow Repeated Account Takeover in vulnerability-lookupEPSS 0.3%CVE-2026-28787HIGHOneUptime has WebAuthn 2FA bypass: server accepts client-supplied challenge instead of server-stored value, allowing credential replayEPSS 0.3%CVE-2026-12704MEDIUMSAML assertion replay via skipped InResponseTo validationEPSS 0.3%CVE-2026-73443MEDIUMOn affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement and replay it indefEPSS 0.3%CVE-2025-36593HIGHDell OpenManage Network Integration, versions prior to 3.8, contains an Authentication Bypass by Capture-replay vulnerability in the RADIUS EPSS 0.3%CVE-2021-46835MEDIUMThere is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cause packets to be hijEPSS 0.3%CVE-2025-47706MEDIUMEnterprise MFA - TFA for Drupal - Moderately critical - Access bypass - SA-CONTRIB-2025-052EPSS 0.3%CVE-2025-68671MEDIUMlakeFS is Missing Timestamp Validation in S3 Gateway AuthenticationEPSS 0.3%CVE-2026-88278CRITICALGV-LPCLPC2011/2211 - ONVIF WS-Security PasswordDigest ReplayEPSS 0.3%CVE-2026-28449MEDIUMOpenClaw < 2026.2.25 - Webhook Replay Attack via Missing Durable Replay SuppressionEPSS 0.3%CVE-2024-38823LOWCVE-2024-38823 Salt AdvisoryEPSS 0.3%CVE-2026-41707HIGHSpring Security DPoPProofJwtDecoderFactory vulnerable to DPoP Proof ReplayEPSS 0.3%CVE-2026-30080HIGHOpenAirInterface v2.2.0 accepts Security Mode Complete without any integrity protection. Configuration has supported integrity NIA1 and NIA2EPSS 0.3%CVE-2024-12137HIGHAuthentication Bypass in Elfatek Elektronics' ANKA JPD-00028EPSS 0.3%CVE-2023-33854MEDIUMMultiple vulnerabilities affect IBM Db2® on Cloud Pak for Data, and Db2 Warehouse on Cloud Pak for Data.EPSS 0.3%CVE-2025-48012MEDIUMOne Time Password - Moderately critical - Access bypass - SA-CONTRIB-2025-063EPSS 0.3%CVE-2026-13734MEDIUMZephyr WireGuard mutates peer state before anti-replay check, enabling capture-replay endpoint hijackEPSS 0.2%CVE-2023-20123MEDIUMCisco Duo Authentication for macOS and Duo Authentication for Windows Logon Offline Credentials Replay VulnerabilityEPSS 0.2%CVE-2025-61479HIGHAn issue in Vanderbilt Industries, Acre Security SPC5300.000 Main Board v.3.14.1 allows a physically proximate attacker to cause a denial ofEPSS 0.2%CVE-2023-50786MEDIUMDradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded (uploaded) images. TEPSS 0.2%