CWE DATABASE
About
GET A DEMO
Backslash Vulnerability Database
Incorrect User Management
Incorrect User Management
CWE-286
Short description
The product does not properly manage a user within its environment.
Extended description
Users can be assigned to the wrong group (class) of permissions resulting in unintended access rights to sensitive objects.