ClassDraft
CWE-282Improper Ownership Management
Category: other
Description
The product assigns the wrong ownership, or does not properly verify the ownership, of an object or resource.
Common consequences· 1
- Access Control — Gain Privileges or Assume Identity
Potential mitigations· 1
- [Architecture and Design, Operation]Very carefully manage the setting, management, and handling of privileges. Explicitly manage trust zones in the software.
Related CAPEC attack patterns· 2
References
Exploits (incoming)2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Using Malicious Filescapec-17 | 100% | live |
| AttackPattern | Leverage Executable Code in Non-Executable Filescapec-35 | 100% | live |
(incoming)3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Vulnerability | CVE-2025-27254cve-2025-27254 | 0% | live |
| KEVEntry | Cisco SD-WAN Path Traversal Vulnerabilitykev-cve-2022-20775 | 0% | live |
| KEVEntry | Linux Kernel Improper Ownership Management Vulnerabilitykev-cve-2023-0386 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.