CWE•Base•Incomplete•5 recent CVEs
CWE-1230Exposure of Sensitive Information Through Metadata
Description
The product prevents direct access to a resource containing sensitive information, but it does not sufficiently limit access to metadata that is derived from the original, sensitive information.
[object Object]
Common consequences
- Confidentiality→Read Application Data