Common Weakness Enumeration
CWE Definition / CWE-671
CWE-671: Lack of Administrator Control over Security
The product uses security features in a way that prevents the product's administrator from tailoring security settings to reflect the environment in which the product is being used. This introduces resultant weaknesses or prevents it from operating at a level of security that is desired by the administrator.
Published:11 Apr 2008
Organization:MITRE
Modified:11 Dec 2025
Related Weakness
CWE-657: Violation of Secure Design Principles
