CWE-302—Authentication Bypass by Assumed-Immutable Data
PUBLISHEDweakness record
released 2006-07-19 · last modified 2025-12-11
Metadata
名称
Authentication Bypass by Assumed-Immutable Data
描述
The authentication scheme or implementation uses key data elements that are assumed to be immutable, but can be controlled or modified by the attacker.