logo
logo
Sign in

OWASP 2013 Vs. OWASP 2017

avatar
Stephanie Bond
OWASP 2013 Vs. OWASP 2017

OWASP has also dropped their long time vulnerability due to its lack of importance in present day application security.

They probably thought that it could be replaced by a more contemporary one.

In 2007, OWASP split Broken Access Control into these two categories to bring more attention to each half of the access control problem (data and functionality).

2013-A4: Insecure Direct Object References:

A direct object reference occurs when a developer exposes a reference to an internal implementation object, such as a file, directory, or database key.

2013-A7: Missing Function Level Access Control:

collect
0
avatar
Stephanie Bond
guide
Zupyak is the world’s largest content marketing community, with over 400 000 members and 3 million articles. Explore and get your content discovered.
Read more