CWE-653: Improper Isolation or Compartmentalization
ClassDraft
The product does not properly compartmentalize or isolate functionality, processes, or resources that require different privilege levels, rights, or permissions.
View on MITREBack to CWE Lookup
Extended Description
When a weakness occurs in functionality that is accessible by lower-privileged users, then without strong boundaries, an attack might extend the scope of the damage to higher-privileged users.
Technical Details
- Structure
- Simple
Applicable To
Not Language-Specific