CWE-640 là gì?
Đang phân tích dữ liệu...
Đang phân tích dữ liệu...
| Tác động | Phạm vi | Diễn giải |
|---|---|---|
| Chiếm đặc quyền hoặc mạo danh | Kiểm soát truy cập | An attacker could gain unauthorized access to the system by retrieving legitimate user's authentication credentials. |
| Từ chối dịch vụ: tiêu thụ tài nguyên khác | Tính sẵn sàng | An attacker could deny service to legitimate system users by launching a brute force attack on the password recovery mechanism using user ids of legitimate users. |
| Khác | Tính toàn vẹn, Khác | The system's security functionality is turned against the system by the attacker. |
Dưới đây là các lỗ hổng tiêu biểu liên quan đến CWE-640, dựa theo mức độ ưu tiên
CWE™ Program, operated by The MITRE Corporation. Copyright © 2006–2026, The MITRE Corporation. The MITRE Corporation hereby grants you a non-exclusive, royalty-free license to use CWE for research, development, and commercial purposes. CWE Terms of Use.
Giải pháp CyStack VulnScan liên tục phát hiện tài sản, xác minh lỗ hổng và giúp đội ngũ bảo mật ưu tiên khắc phục cho toàn bộ doanh nghiệp.
Khám phá CyStack VulnScanvi