CWE-441
Overview
- CWE ID
- 441
- CWE Name
- Unintended Proxy or Intermediary ('Confused Deputy')
- CWE Abstraction
- Class
- CWE structure
- Simple
- CWE Status
- Draft
Description
The product receives a request, message, or directive from an upstream component, but the product does not sufficiently preserve the original source of the request before forwarding the request to an external actor that is outside of the product's control