CWE-264: Permissions, Privileges, and Access Controls
Individual Definition in a New Window
Permissions, Privileges, and Access Controls
Status: Incomplete
Category ID: 264 (Category)
Description
Summary
Weaknesses in this category are related to the management of
permissions, privileges, and other security features that are used to perform
access control.
Applicable Platforms
Languages
All
Potential Mitigations
Follow the principle of least privilege when assigning access rights
to entities in a software system.