The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
Apply appropriate access control authorizations for each access to all restricted URLs, scripts or files.
Consider using MVC based frameworks such as Struts.
Our security experts can help you identify and remediate CWE-425 vulnerabilities in your codebase.
Get Security Assessment