CWE-420

Unprotected Alternate Channel

Weakness Description

The product protects a primary channel, but it does not use the same level of protection for an alternate channel.

Potential Mitigations

Architecture and Design

Identify all alternate channels and use the same protection mechanisms that are used for the primary channels.

Common Consequences

Access Control
Gain Privileges or Assume IdentityBypass Protection Mechanism
Advertisement

Related Weaknesses