Common Weakness Enumeration
CWE Definition / CWE-284
CWE-284: Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Published:19 Jul 2006
Organization:MITRE
Modified:30 Apr 2026
