CWE-441

Overview
  • CWE ID
  • 441
  • CWE Name
  • Unintended Proxy or Intermediary ('Confused Deputy')
  • CWE Abstraction
  • Class
  • CWE structure
  • Simple
  • CWE Status
  • Draft
Description
The product receives a request, message, or directive from an upstream component, but the product does not sufficiently preserve the original source of the request before forwarding the request to an external actor that is outside of the product's control
Extended Description
Related CWEs
CWE ID View ID Nature Ordinal
610 1000 ChildOf Primary
668 1000 CanPrecede