Back to CWE Lookup

CWE-653: Improper Isolation or Compartmentalization

ClassDraft
View on MITRE

The product does not properly compartmentalize or isolate functionality, processes, or resources that require different privilege levels, rights, or permissions.

Extended Description

When a weakness occurs in functionality that is accessible by lower-privileged users, then without strong boundaries, an attack might extend the scope of the damage to higher-privileged users.

Technical Details

Structure
Simple

Applicable To

Languages
Not Language-Specific
Platforms