CWE-1023: Incomplete Comparison with Missing Factors

ClassIncomplete

The product performs a comparison between entities that must consider multiple factors or characteristics of each entity, but the comparison does not include one or more of these factors.

View on MITRE
Back to CWE Lookup

Extended Description

An incomplete comparison can lead to resultant weaknesses, e.g., by operating on the wrong object or making a security decision without considering a required factor.

Technical Details

Structure
Simple

Applicable To

Languages
Not Language-Specific
Platforms

Learn More