Common Weakness Enumeration
CWE Definition / CWE-219
CWE-219: Storage of File with Sensitive Data Under Web Root
The product stores sensitive data under the web document root with insufficient access control, which might make it accessible to untrusted parties.
Published:19 Jul 2006
Organization:MITRE
Modified:11 Dec 2025
Related Weakness
CWE-552: Files or Directories Accessible to External Parties
