CWE-289: Authentication Bypass by Alternate Name

BaseIncomplete

The product performs authentication based on the name of a resource being accessed, or the name of the actor performing the access, but it does not properly check all possible names for that resource or actor.

View on MITRE
Back to CWE Lookup

Technical Details

Structure
Simple

Applicable To

Languages
Not Language-Specific
Platforms

Learn More

CWE-289: Authentication Bypass by Alternate Name | CWE Lookup | Inventive HQ