CWE•Class•Draft•8 recent CVEs
CWE-684Incorrect Provision of Specified Functionality
Description
The code does not function according to its published specifications, potentially leading to incorrect usage.
When providing functionality to an external party, it is important that the product behaves in accordance with the details specified. When requirements of nuances are not documented, the functionality may produce unintended behaviors for the caller, possibly leading to an exploitable state.
Common consequences
- Other→Quality Degradation
Potential mitigations
- ImplementationEnsure that your code strictly conforms to specifications.