Common Weakness Enumeration

    CWE Definition / CWE-219

    CWE-219: Storage of File with Sensitive Data Under Web Root

    The product stores sensitive data under the web document root with insufficient access control, which might make it accessible to untrusted parties.

    Published:19 Jul 2006
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-552: Files or Directories Accessible to External Parties