|
|
|
|
CWE-424: Failure to Protect Alternate Path | |
| | Failure to Protect Alternate Path |
|
| Weakness ID: 424 (Weakness Class) | | Status: Draft |
Description
Description Summary The product does not sufficiently protect all possible paths
that a user can take to access restricted functionality or
resources.
Time of Introduction Potential Mitigations | Phase | Description |
| Malicious users are likely to attack the weakest link. |
| Deploy different layers of protection to implement security in
depth. |
Relationships Taxonomy Mappings | Mapped Taxonomy Name | Node ID | Fit | Mapped Node Name |
| PLOVER | | | Alternate Path Errors |
Content History | Submissions |
|---|
| Submission Date | Submitter | Organization | Source |
|---|
| PLOVER | | Externally Mined | | | Modifications |
|---|
| Modification Date | Modifier | Organization | Source |
|---|
| 2008-07-01 | Eric Dalci | Cigital | External | | updated Potential Mitigations,
Time of Introduction | | 2008-09-08 | CWE Content Team | MITRE | Internal | | updated Relationships, Other Notes,
Taxonomy Mappings | | 2009-10-29 | CWE Content Team | MITRE | Internal | | updated Other Notes |
|