CWE Database
/

CWE-223

Back to CWE list

CWE-223

Omission of Security-relevant Information

Base
Draft

Description

The product does not record or display information that would be important for identifying the source or nature of an attack, or determining if an action is safe.

Parent Weaknesses (ChildOf)

Common Consequences

Scope

Non-Repudiation

Impact

Hide Activities

CVE-1999-1029

Login attempts are not recorded if the user disconnects before the maximum number of tries.

CVE-2002-1839

Sender's IP address not recorded in outgoing e-mail.

CVE-2000-0542

Failed authentication attempts are not recorded if later attempt succeeds.

Applicable Platforms

Not Language-Specific

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now