Falhas do tipo CWE-598

98 resultados

Transmissão de dados sensíveis em query string HTTP

A aplicação envia informações sensíveis (senhas, tokens, chaves) como parâmetros de query (URL) em requisições HTTP. Isso expõe os dados em logs de servidor, histórico de browser, proxies intermediários e tráfego de rede — qualquer camada que processa ou registra URLs consegue capturar a informação.

Exemplo

Uma página de login que direciona para 'https://app.com/validar?usuario=joao&senha=abc123' coloca a credencial diretamente visível na URL. Se houver um redirect HTTP→HTTPS ou um proxy corporativo, a senha fica registrada em múltiplos logs; malware no navegador captura pelo histórico.

Como mitigar

Sempre transmita dados sensíveis via POST (não GET/query string) com body encriptado (HTTPS mandatório). Use session tokens ou bearer tokens em headers Authorization em vez de credenciais diretas na URL. Valide e sanitize logs para não registrar parâmetros sensíveis.

CVE-2025-32021LOWWeblate VCS credentials included in URL parameters are potentially logged and saved into browser history as plaintextEPSS 0.4%CVE-2025-22387HIGHAn issue was discovered in Optimizely Configured Commerce before 5.2.2408. A medium-severity issue exists in requests for resources where thEPSS 0.4%CVE-2021-41719HIGHMaharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 application till version 16.1 communicates using EPSS 0.4%CVE-2025-56551HIGHAn issue in DirectAdmin v1.680 allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with aEPSS 0.4%CVE-2025-3637LOWMoodle: csrf token exposure via url in moodle mod_data moduleEPSS 0.4%CVE-2026-63408HIGHGrav API Plugin: JWT Access Token Accepted via `?token=` URL Query ParameterEPSS 0.4%CVE-2023-25524MEDIUM NVIDIA Omniverse Workstation Launcher for Windows and Linux contains a vulnerability in the authentication flow, where a user’s access tokeEPSS 0.4%CVE-2023-50954MEDIUMIBM InfoSphere Information Server information disclosureEPSS 0.4%CVE-2025-50709MEDIUMAn issue in Perplexity AI GPT-4 allows a remote attacker to obtain sensitive information via a GET parameterEPSS 0.3%CVE-2024-41738MEDIUMIBM TXSeries for Multiplatforms information disclosureEPSS 0.3%CVE-2025-13219MEDIUMMultiple vulnerabilities in IBM Aspera OrchestratorEPSS 0.3%CVE-2024-31206HIGHUse of Unencrypted HTTP Request in dectalk-ttsEPSS 0.3%CVE-2025-69270LOWSpectrum session token in URLEPSS 0.3%CVE-2025-24948MEDIUMIn JotUrl 2.0, passwords are sent via HTTP GET-type requests, potentially exposing credentials to eavesdropping or insecure records.EPSS 0.3%CVE-2025-41772HIGHwwwupdate.cgi Session token in URLEPSS 0.3%CVE-2026-88897HIGHFlextype CMS through 1.0.0-alpha.3 API Token Exposure via Query StringEPSS 0.3%CVE-2026-44883HIGHPortainer: JWT accepted in URL query leaks tokens to logs and referersEPSS 0.3%CVE-2026-74880CRITICALopenssl_encrypt before 1.4.0 Token Leakage via Query ParametersEPSS 0.3%CVE-2026-31381MEDIUMGainsight Assist plugin information disclosureEPSS 0.3%CVE-2025-8997MEDIUMOpenText Enterprise Security Manager Information ExposureEPSS 0.3%