CWE-602
Overview
- CWE ID
- 602
- CWE Name
- Client-Side Enforcement of Server-Side Security
- CWE Abstraction
- Base
- CWE structure
- Simple
- CWE Status
- Draft
Description
The product is composed of a server that relies on the client to implement a mechanism that is intended to protect the server.
Extended Description
When the server relies on protection mechanisms placed on the client side, an attacker can modify the client-side behavior to bypass the protection mechanisms, resulting in potentially unexpected interactions between the client and server. The consequence