Common Weakness Enumeration

    CWE Definition / CWE-641

    CWE-641: Improper Restriction of Names for Files and Other Resources

    The product constructs the name of a file or other resource using input from an upstream component, but it does not restrict or incorrectly restricts the resulting name.

    Published:30 Jan 2008
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-99: Improper Control of Resource Identifiers ('Resource Injection')