Skip to main content

๐Ÿ’ผ 6.5.8 Improper access control.

Descriptionโ€‹

Such as insecure direct object references, failure to restrict URL access, directory traversal, and failure to restrict user access to functions

Similarโ€‹

  • Sections
    • /frameworks/pci-dss-v4.0/06/02/04
  • Internal
    • ID: dec-c-7121c4b2

Similar Sections (Take Policies From)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ PCI DSS v4.0 โ†’ ๐Ÿ’ผ 6.2.4 Software engineering techniques or other methods are defined and in use by software development personnel to prevent or mitigate common software attacks and related vulnerabilities in bespoke and custom software.

Similar Sections (Give Policies To)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ PCI DSS v4.0 โ†’ ๐Ÿ’ผ 6.2.4 Software engineering techniques or other methods are defined and in use by software development personnel to prevent or mitigate common software attacks and related vulnerabilities in bespoke and custom software.

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags