CWE Database
/

CWE-447

Back to CWE list

CWE-447

Unimplemented or Unsupported Feature in UI

Base
Draft

Description

A UI function for a security feature appears to be supported and gives feedback to the user that suggests that it is supported, but the underlying functionality is not implemented.

Common Consequences

Scope

Other

Impact

Varies by Context, Unexpected State

Potential Mitigations

Testing

Perform functionality testing before deploying the application.

CVE-2000-0127

GUI configuration tool does not enable a security option when a checkbox is selected, although that option is honored when manually set in the configuration file.

CVE-2001-0863

Router does not implement a specific keyword when it is used in an ACL, allowing filter bypass.

CVE-2001-0865

Router does not implement a specific keyword when it is used in an ACL, allowing filter bypass.

CVE-2004-0979

Web browser does not properly modify security setting when the user sets it.

Applicable Platforms

Not Language-Specific

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now