CWE-250: Execution with Unnecessary Privileges
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
Browse cwe in operation system configuration with official CWE context and Glexia analysis.
Search And Filters
Showing 4 of 4 CWE records.
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
Login pages do not use adequate measures to protect the user name and password while they are in transit from the client to the server.
The product places sensitive information into files or directories that are accessible to actors who are allowed to have access to the files, but not to the sensitive information.
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.