CWE-427
Overview
- CWE ID
- 427
- CWE Name
- Uncontrolled Search Path Element
- CWE Abstraction
- Base
- CWE structure
- Simple
- CWE Status
- Draft
Description
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.