BaseIncomplete

CWE-1057Data Access Operations Outside of Expected Data Manager Component

Category: other

Description

The product uses a dedicated, central data manager component as required by design, but it contains code that performs data-access operations that do not use this data manager.

Common consequences· 1

  • Availability — Reduce Performance
    This issue can make the product perform more slowly than intended, since the intended central data manager may have been explicitly optimized for performance or other quality characteristics. If the relevant code is reachable by an attacker, then this performance problem might introduce a vulnerability.

References

  1. https://cwe.mitre.org/data/definitions/1057.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CWE
Data Access from Outside Expected Data Manager Component
CWE
Non-SQL Invokable Control Element with Excessive Number of Data Resource Accesses
CWE
Excessive Number of Inefficient Server-Side Data Accesses
CWE
Data Resource Access without Use of Connection Pooling
CWE
Excessive Execution of Sequential Searches of Data Resource
CWE
Insufficient Encapsulation
Sourced from MITRE CWE 4.20. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.