387 – Insecure service configuration - Object Reutilization
Description
The system does not validate that objects, data or information, valid for one use only can be reused.
Impact
Abuse functionalities that should be accessed once.
Recommendation
Implement validations to guarantee that One-Time data. cannot be reused.
Threat
Anonymous attacker from the Internet.
Expected Remediation Time
Score 4.0
Default score using CVSS 4.0. It may change depending on the context of the src.
Base 4.0
- Attack vector: N
- Attack complexity: L
- Attack Requirements: N
- Privileges required: N
- User interaction: N
- Confidentiality (VC): N
- Integrity (VI): L
- Availability (VA): N
- Confidentiality (SC): N
- Integrity (SI): N
- Availability (SA): N
Threat 4.0
- Exploit maturity: A