Falhas do tipo CWE-295

856 resultados

Validação inadequada de certificado SSL/TLS

A aplicação não valida corretamente o certificado SSL/TLS do servidor remoto, aceitando certificados inválidos, expirados ou emitidos por autoridades não confiáveis. Isso permite que um atacante em posição de intermediário (man-in-the-middle) intercepte a comunicação criptografada e acesse dados sensíveis que deveriam estar protegidos.

Exemplo

Uma aplicação mobile conecta a uma API via HTTPS mas ignora erros de validação de certificado (ou desabilita a verificação para 'facilitar testes'). Um atacante na mesma rede WiFi consegue interceptar requisições, roubar tokens de autenticação ou credenciais do usuário.

Como mitigar

Sempre validar o certificado do servidor (hostname, cadeia de confiança, data de validade). Em desenvolvimento, use certificados válidos mesmo em ambientes de teste; nunca desabilite validação em produção. Considere certificate pinning para APIs críticas, fixando o certificado esperado na aplicação.

CVE-2024-31955MEDIUMAn issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows EPSS 0.2%CVE-2026-6860MEDIUMA TCP client can perform a TLS handshake and present the server name extension with a server name that is accepted by a server wildcard nameEPSS 0.2%CVE-2024-6472HIGHAbility to trust not validated macro signatures removed in high security modeEPSS 0.2%CVE-2023-33861MEDIUMIBM Security ReaQta improper certificate validationEPSS 0.2%CVE-2024-7206HIGHFirmware extraction and Hardware SSL Pinning BypassEPSS 0.2%CVE-2023-6055HIGHImproper Certificate Validation in Bitdefender Total Security HTTPS Scanning (VA-11158)EPSS 0.2%CVE-2026-15554HIGHUndertow-core: undertow: authentication bypass via ajp ssl_cert/is_ssl forgeryEPSS 0.2%CVE-2025-7395CRITICALDomain Name Validation Bypass with Apple Native Certificate ValidationEPSS 0.2%CVE-2026-61668HIGHDIRAC: Pilot code downloaded over unverified HTTPS connectionEPSS 0.2%CVE-2026-11310HIGHX.509 trust-chain bypass in wolfSSL_X509_verify_cert() via untrusted intermediate anchoringEPSS 0.2%CVE-2025-30277HIGHQsync CentralEPSS 0.2%CVE-2025-30278HIGHQsync CentralEPSS 0.2%CVE-2026-15078HIGHVulnerabilities in IBM AIX and PowerVM VIOSEPSS 0.2%CVE-2026-11999HIGHX.509 trust-chain bypass via path-depth exhaustion in wolfSSL_X509_verify_cert()EPSS 0.2%CVE-2026-55960HIGHUn-negotiated Raw Public Key (RFC 7250) accepted in place of X.509, bypassing chain validationEPSS 0.2%CVE-2025-9293HIGHInsufficient Certificate Validation in Multiple Mobile Applications Allows Man in the Middle InterceptionEPSS 0.2%CVE-2024-11621HIGHMissing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modifEPSS 0.2%CVE-2025-67752HIGHOpenEMR Has Disabled SSL Certificate Verification in HTTP ClientEPSS 0.2%CVE-2024-33612MEDIUMBIG-IP Next Central Manager vulnerabilityEPSS 0.2%CVE-2025-59353HIGHManager generates mTLS certificates for arbitrary IP addressesEPSS 0.2%