CWE-291

Reliance on IP Address for Authentication

High

Description

The product uses an IP address for authentication.

Potential Impact

How to Fix

Architecture and Design

Use other means of identity verification that cannot be simply spoofed. Possibilities include a username/password or certificate.

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-291 vulnerabilities in your codebase.

Get Security Assessment