CWE-275: Permission Issues
Category ID: 275 (Category) Status: Draft
Description
Description Summary
Weaknesses in this category are related to improper assignment or handling of permissions .
Relationships
Affected Resources
Functional Areas
File processing, non-specific.
Taxonomy Mappings
Mapped Taxonomy Name Node ID Fit Mapped Node Name
PLOVER Permission errors
OWASP Top Ten 2004 A2 CWE_More_Specific Broken Access Control
OWASP Top Ten 2004 A10 CWE_More_Specific Insecure Configuration Management
References
[REF-17] Michael Howard, David LeBlanc
and John Viega. "24 Deadly Sins of Software Security". "Sin 17: Failure to Protect Stored Data." Page
253. McGraw-Hill. 2010.
Content History
Submissions Submission Date Submitter Organization Source PLOVER Externally Mined Modifications Modification Date Modifier Organization Source 2008-09-08 CWE Content Team MITRE Internal updated Relationships,
Taxonomy_Mappings 2009-01-12 CWE Content Team MITRE Internal updated Relationships 2012-05-11 CWE Content Team MITRE Internal updated References