Common Weakness Enumeration

    CWE Definition / CWE-671

    CWE-671: Lack of Administrator Control over Security

    The product uses security features in a way that prevents the product's administrator from tailoring security settings to reflect the environment in which the product is being used. This introduces resultant weaknesses or prevents it from operating at a level of security that is desired by the administrator.

    Published:11 Apr 2008
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-657: Violation of Secure Design Principles