CWE-1083: Data Access from Outside Expected Data Manager Component

low-risk

The product is intended to manage data access through a particular data manager component such as a relational or non-SQL database, but it contains code that performs data access operations without using that component.

Abstraction: Base

Common Consequences

Other Reduce Reliability

Real-World Examples (1)

CVE CVSS EPSS KEV
CVE-2022-2493 8.1 0.5%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal