CWE-283Unverified Ownership

PUBLISHEDweakness record
released 2006-07-19 · last modified 2025-12-11

Metadata

CWE ID:
CWE-283
摘要:
Base
结构:
Simple
状态:
Draft
发布日期:
2006-07-19
更新日期:
2025-12-11

名称

Unverified Ownership

描述

The product does not properly verify that a critical resource is owned by the proper entity.

常见后果

范围:
Access Control
影响:
Gain Privileges or Assume Identity
注释:
An attacker could gain unauthorized access to system resources.

相关 CWE