risk

Excessive privilege and wrong assignment of access rights

Overly broad or wrongly assigned access rights, applications/services running with excessive privileges, and failure to enforce least privilege — a compromise or insider then gains broad access to systems and data.

Record JSON · Open in map · Data retrieval guide

Catalog revision: f368a6cce277037e4b1e1ff46004e3acd295f96c9ac63a411a0e45775a7f468e. A connection does not establish full coverage.

Attributes

category
cyber_security
domain
  • Access Control & Identity Management
  • Data Protection & Privacy
taxonomy
  • iso-27005-vulnerability
  • nist-800-30-threat-event
  • nist-privacy-risk
inherent_rating
high

Details

risk_id
access-excess-privilege
category
cyber_security
likelihood
high
impact
high
inherent_rating
high
treatment
mitigate
taxonomies
  • iso-27005-vulnerability
  • nist-800-30-threat-event
  • nist-privacy-risk

Source

No record-specific source URL is provided.

Connections