Umbra Wiki weakness weakness/CWE-282
Back to wiki

CWE-282 — Improper Ownership Management

provenance: imported · CWE: CWE-282

CWE-282: Improper Ownership Management

MITRE CWE weakness

Kind Weakness
Abstraction Class
Status Draft
Likelihood of exploit —

Description

The product assigns the wrong ownership, or does not properly verify the ownership, of an object or resource.

Common consequences

  • Access Control: Gain Privileges or Assume Identity

Mitigations

Architecture and Design — Very carefully manage the setting, management, and handling of privileges. Explicitly manage trust zones in the software.

References

  • CWE page: https://cwe.mitre.org/data/definitions/282.html
  • CWE list: https://cwe.mitre.org/data/index.html

See all 1,245 pages under Weakness classes (CWE) →

Related pages