CWE-940 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-940 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2025-61932Lanscope Endpoint Manager (On-Premises) (Client program (MR) and Detection agent (DA)) improperly ve…2.8%심각9.3CVE-2026-102117On deployments where the remote-support capability is licensed and enabled, an authenticated System …0.4%높음7.2CVE-2026-89178WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error…0.2%높음8.7CVE-2026-85085The Canva Android App before 2.376.0 allowed an external origin to be loaded in a privileged WebView…0.2%심각9.6CVE-2026-85125The Android application "YAMAP -Social Trekking GPS App" contains an improper access control vulnera…0.2%보통5.1CVE-2026-102511Improper Verification of Source of a Communication Channel in the ADS discovery of the Go implementa…0.2%높음8.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.