Common Weakness Enumeration
CWE Definition / CWE-424
CWE-424: Improper Protection of Alternate Path
The product does not sufficiently protect all possible paths that a user can take to access restricted functionality or resources.
Published:19 Jul 2006
Organization:MITRE
Modified:11 Dec 2025
