Fallos del tipo CWE-923

67 resultados

Restrição inadequada de canal de comunicação para endpoints pretendidos

Ocorre quando a aplicação não valida corretamente se está se comunicando com o endpoint correto, permitindo que um atacante intercepte, redirecione ou substitua a comunicação. O código assume que está falando com o servidor legítimo sem verificar identidade, certificados ou origem, criando janelas para man-in-the-middle ou redirecionamento malicioso.

Ejemplo

Uma app mobile conecta a um servidor via HTTP sem validar certificado SSL/TLS, ou aceita qualquer certificado autoassinado. Um atacante na mesma rede WiFi intercepta a conexão e serve credenciais falsas; a app não detecta porque não verificou a autenticidade do servidor.

Cómo mitigar

Sempre validar certificados SSL/TLS (fixar certificado público se possível), usar HTTPS obrigatório, implementar verificação de hostname, e em APIs internas usar autenticação mútua (mTLS). Nunca confiar em claims do servidor sem validação criptográfica.

CVE-2025-12357MEDIUMInternational Standards Organization ISO 15118-2 Improper Restriction of Communication Channel to Intended EndpointsEPSS 0.2%CVE-2024-36252MEDIUMImproper restriction of communication channel to intended endpoints issue exists in Ricoh Streamline NX PC Client ver.3.6.x and earlier. If EPSS 0.2%CVE-2026-63226MEDIUMPrinters and Multifunction Printers (MFPs) provided by Ricoh Company, Ltd. do not implement restrictions on SSH port forwarding, allowing toEPSS 0.2%CVE-2024-22315MEDIUMIBM Fusion improper communication restrictionEPSS 0.2%CVE-2026-22715MEDIUMVMware Workstation/Fusion NAT vulnerabilityEPSS 0.2%CVE-2026-22726MEDIUMRoute Services Firewall BypassEPSS 0.2%CVE-2025-36180MEDIUMInadequate Pod Communication Restrictions, affects watsonx.dataEPSS 0.2%CVE-2026-57028MEDIUMJunos OS Evolved: A port which has been inadvertently exposed can be reached by an attackerEPSS 0.2%CVE-2022-2835MEDIUMA flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that were accessed by theEPSS 0.2%CVE-2025-36145MEDIUMMultiple Vulnerabilities in watsonx.dataEPSS 0.2%CVE-2025-58742HIGHInsufficient Configuration Protections Enable Database Credential Interception in Milner ImageDirector CaptureEPSS 0.2%CVE-2022-38125LOWFTP Agent forwards traffic on inactive ports to LinkManagerEPSS 0.2%CVE-2026-12039MEDIUMDocker Sandboxes network egress allowlist bypass via unfiltered DNS resolutionEPSS 0.1%CVE-2025-33176MEDIUMNVIDIA RunAI for all platforms contains a vulnerability where a user could cause an improper restriction of communications channels on an adEPSS 0.1%CVE-2026-59841MEDIUMA improper restriction of communication channel to intended endpoints vulnerability in Fortinet FortiSIEMWindowsAgent 7.4.0 through 7.4.1 maEPSS 0.1%CVE-2025-32886MEDIUMAn issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. All packets sent over RF are also sent over UART with USB EPSS 0.1%CVE-2024-47125HIGHImproper Restriction of Communication Channel to Intended Endpoints in goTenna ProEPSS 0.1%CVE-2025-27769LOWA vulnerability has been identified in Heliox Flex 180 kW EV Charging Station (All versions < F4.11.1), Heliox Mobile DC 40 kW EV Charging SEPSS 0.1%CVE-2026-12539MEDIUMDocker Sandboxes ICMP egress restriction bypass after daemon restartEPSS 0.1%CVE-2025-36438MEDIUMMultiple Vulnerabilities in IBM Concert SoftwareEPSS 0.1%