CWE-1090: Method Containing Access of a Member Element from Another Class
A method for a class performs an operation that directly accesses a member element from another class.
Overview
CWE-1090 (Method Containing Access of a Member Element from Another Class) is a base-level software weakness catalogued by MITRE in the Common Weakness Enumeration (CWE). It describes a recurring type of mistake that can lead to exploitable security vulnerabilities.
Common consequences
What can happen when CWE-1090 is exploited.
Reduce Maintainability, Increase Analytical Complexity
Affects: Other
This issue suggests poor encapsulation and makes it more difficult to understand and maintain the product, which indirectly affects security by making it more difficult or time-consuming to find and/or fix vulnerabilities. It also might make it easier to introduce vulnerabilities.
How it happens
When it is introduced
Typically introduced during these phases of the software lifecycle.
Applies to
Languages