Detect Improper Restriction of Communication Channel to Intended Endpoints with Automated Static Analysis
Documented detection approaches include Automated Static Analysis; recorded impacts include Gain Privileges or Assume Identity; the entry maps to CAPEC-161, CAPEC-481, CAPEC-501, and CAPEC-697. Use these source-defined anchors to turn CWE-923 into implementation, review, and verification checks for the affected component.
CWE-923: Improper Restriction of Communication Channel to Intended Endpoints — MITRE CWE