CWE-638

Overview
  • CWE ID
  • 638
  • CWE Name
  • Not Using Complete Mediation
  • CWE Abstraction
  • Class
  • CWE structure
  • Simple
  • CWE Status
  • Draft
Description
The software does not perform access checks on a resource every time the resource is accessed by an entity, which can create resultant weaknesses if that entity's rights or privileges change over time.
Extended Description
Related CWEs
CWE ID View ID Nature Ordinal
657 1000 ChildOf Primary
862 1000 ChildOf