CWEBaseIncomplete7 recent CVEs

CWE-302Authentication Bypass by Assumed-Immutable Data

Description

The authentication scheme or implementation uses key data elements that are assumed to be immutable, but can be controlled or modified by the attacker.

Common consequences

Potential mitigations

Related CWEs

Recent CVEs classified under this CWE