CWE-530

Exposure of Backup File to an Unauthorized Control Sphere

Medium

Description

A backup file is stored in a directory or archive that is made accessible to unauthorized actors.

Potential Impact

How to Fix

Policy

Recommendations include implementing a security policy within your organization that prohibits backing up web application source code in the webroot.

Detection Methods

Related Weaknesses

References

View on MITRE CWE Database →

Need Help Fixing This Vulnerability?

Our security experts can help you identify and remediate CWE-530 vulnerabilities in your codebase.

Get Security Assessment