CWE-648 - CERT CVE

CWE-648 - Incorrect Use of Privileged APIs

The application does not conform to the API requirements for a function call that requires extra privileges. This could allow attackers to gain privileges by causing the function to be called incorrectly.

CAPEC ID Naziv
CAPEC-107 Cross Site Tracing
CAPEC-234 Hijacking a privileged process