Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Are the access control rules correct? #34

Open
Kr0nox opened this issue Jan 29, 2024 · 0 comments
Open

Are the access control rules correct? #34

Kr0nox opened this issue Jan 29, 2024 · 0 comments
Labels
accepted Uncertainty was manually verified and entered into the archive

Comments

@Kr0nox
Copy link
Collaborator

Kr0nox commented Jan 29, 2024

Are the access control rules correct?

Description

The uncertainty surrounding the correctness of access control rules, which dictate the permissions and restrictions for users or systems attempting to interact with certain resources within a software application.

Literature Reference

Classifications

Category Option
Location Behavior
Architectural Element Type Interface
Type Recognized Ignorance
Manageability Partially Reducible
Resolution Time Runtime
Reducible by ADD No
Impact on Confidentiality Indirect
Severity of the Impact Low

Keywords

Access Control, Human Error

Example

Incorrectly configured access control rules allowed unauthorized users to access confidential information.

Related Uncertainties

Related Uncertainties:

#60, #37, #32
@Kr0nox Kr0nox added the proposal A proposed uncertainty that was not yet verified and added to the archive label Jan 29, 2024
@sebinside sebinside added accepted Uncertainty was manually verified and entered into the archive and removed proposal A proposed uncertainty that was not yet verified and added to the archive labels Feb 26, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
accepted Uncertainty was manually verified and entered into the archive
Projects
None yet
Development

No branches or pull requests

2 participants