CWE-1023

Incomplete Comparison with Missing Factors
AI Translation Available

The product performs a comparison between entities that must consider multiple factors or characteristics of each entity, but the comparison does not include one or more of these factors.

Status
incomplete
Abstraction
class

Common Consequences

integrity access control
Impacts
alter execution logic bypass protection mechanism

Potential Mitigations

Phases:
testing
Descriptions:
• Thoroughly test the comparison scheme before deploying code into production. Perform positive testing as well as negative testing.