目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CWE-300 通道可被非端点访问(中间人攻击) 类漏洞列表 44

CWE-300 通道可被非端点访问(中间人攻击) 类弱点 44 条 CVE 漏洞汇总,含 AI 中文分析。

CWE-300 指通信通道可被非端点访问的漏洞,源于产品未能充分验证通信两端实体的身份或确保通道完整性。攻击者常利用此缺陷进行中间人攻击,通过拦截、篡改或注入恶意数据来窃取敏感信息或破坏通信逻辑。开发者应避免此类风险,需实施强身份认证机制,如使用数字证书验证双方身份,并采用加密技术(如 TLS)保障数据传输的机密性与完整性,从而防止未授权第三方介入通信过程。

MITRE CWE 官方描述
CWE:CWE-300 非端点可访问的通道 (Channel Accessible by Non-Endpoint) 英文:产品未能充分验证通信通道两端实体的身份,或者未能充分确保通道的完整性,从而导致非端点实体能够访问或影响该通道。 为了在双方之间建立安全通信,充分验证通信通道各端实体的身份通常至关重要。不充分或不一致的验证可能导致对任一通信实体的识别不足或错误。这可能会产生负面后果,例如对通道另一端实体的信任错置。攻击者可以利用这一点,在通信实体之间插入自身并伪装成原始实体。在缺乏足够的身份验证的情况下,此类攻击者可以窃听并可能修改原始实体之间的通信。
常见影响 (1)
Confidentiality, Integrity, Access Control Read Application Data, Modify Application Data, Gain Privileges or Assume Identity
An attacker could pose as one of the entities and read or possibly modify the communication.
缓解措施 (3)
Implementation Always fully authenticate both ends of any communications channel.
Architecture and Design Adhere to the principle of complete mediation.
Implementation A certificate binds an identity to a cryptographic key to authenticate a communicating party. Often, the certificate takes the encrypted form of the hash of the identity of the subject, the public key, and information such as time of issue or expiration using the issuer's private key. The certificate can be validated by deciphering the certificate with the issuer's public key. See also X.509 certi…
代码示例 (1)
In the Java snippet below, data is sent over an unencrypted channel to a remote server.
Socket sock; PrintWriter out; try { sock = new Socket(REMOTE_HOST, REMOTE_PORT); out = new PrintWriter(echoSocket.getOutputStream(), true); // Write data to remote host via socket output stream. ... }
Bad · Java
CVE ID 标题 CVSS 风险等级 Published
CVE-2019-3793 Pivotal Software Application Service Manager 授权问题漏洞 — Apps Manager 9.8 - 2019-04-24
CVE-2018-13298 Synology Android Moments 权限许可和访问控制问题漏洞 — Android Moments 8.1 - 2019-04-01
CVE-2018-14636 Openstack-neutron 安全漏洞 — openstack-neutron 6.5 - 2018-09-10
CVE-2017-12151 Samba 加密问题漏洞 — samba 7.4 - 2018-07-27
CVE-2017-12150 Samba 安全漏洞 — samba 7.4 - 2018-07-26
CVE-2016-10536 engine.io-client 安全漏洞 — engine.io-client node module 5.9 - 2018-05-31
CVE-2017-12697 General Motors和Shanghai OnStar iOS Client 安全漏洞 — General Motors and Shanghai OnStar (SOS) iOS Client 5.9 - 2018-01-09
CVE-2017-15086 Red Hat Enterprise Linux Gluster Storage 安全漏洞 — Gluster Storage for RHEL 6 5.9 - 2017-11-08
CVE-2017-15085 Red Hat Enterprise Linux Gluster Storage 安全漏洞 — Gluster Storage for RHEL 6 5.9 - 2017-11-08
CVE-2017-12735 Siemens LOGO!8 BM 安全漏洞 — LOGO! 8 BM (incl. SIPLUS variants) 7.4 - 2017-08-30
CVE-2017-9941 Siemens SiPass integrated 安全漏洞 — SiPass integrated All versions before V2.70 7.4 - 2017-08-08
CVE-2017-6870 Siemens SIMATIC WinCC Sm@rtClient for Android 安全漏洞 — SIMATIC WinCC Sm@rtClient for Android 7.4 - 2017-08-08
CVE-2017-7480 rkhunter 代码问题漏洞 — rkhunter 9.8 - 2017-07-21
CVE-2017-6052 Hyundai Motor America Blue Link 安全漏洞 — Hyundai Motor America Blue Link 4.2 - 2017-04-26

CWE-300(通道可被非端点访问(中间人攻击)) 是常见的弱点类别,本平台收录该类弱点关联的 44 条 CVE 漏洞。