CWE Database
/

CWE-507

Back to CWE list

CWE-507

Trojan Horse

Base
Incomplete

Description

The product appears to contain benign or useful functionality, but it also contains code that is hidden from normal operation that violates the intended security policy of the user or the system administrator.

Parent Weaknesses (ChildOf)

Common Consequences

Scope

Confidentiality
Integrity
Availability

Impact

Execute Unauthorized Code or Commands

Potential Mitigations

Operation

Most antivirus software scans for Trojan Horses.

Installation

Verify the integrity of the product that is being installed.

Applicable Platforms

Not Language-Specific

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now