CWE-642 - CERT CVE

CWE-642 - External Control of Critical State Data

The software stores security-critical state information about its users, or the software itself, in a location that is accessible to unauthorized actors.

CAPEC ID Naziv
CAPEC-21 Exploitation of Trusted Identifiers
CAPEC-31 Accessing/Intercepting/Modifying HTTP Cookies