CWE-638
Overview
- CWE ID
- 638
- CWE Name
- Not Using Complete Mediation
- CWE Abstraction
- Class
- CWE structure
- Simple
- CWE Status
- Draft
Description
The software does not perform access checks on a resource every time the resource is accessed by an entity, which can create resultant weaknesses if that entity's rights or privileges change over time.