Umbra Wiki weakness weakness/CWE-290
Back to wiki

CWE-290 — Authentication Bypass by Spoofing

provenance: imported · CWE: CWE-290

CWE-290: Authentication Bypass by Spoofing

MITRE CWE weakness

Kind Weakness
Abstraction Base
Status Incomplete
Likelihood of exploit

Description

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Common consequences

  • Access Control: Bypass Protection Mechanism, Gain Privileges or Assume Identity

Mitigations

(none listed)

References

  • CWE page: https://cwe.mitre.org/data/definitions/290.html
  • CWE list: https://cwe.mitre.org/data/index.html