Client-Side Enforcement of Server-Side Security
CWE-602 · Class · Draft
The product is composed of a server that relies on the client to implement a mechanism that is intended to protect the server.
Extended description
When the server relies on protection mechanisms placed on the client side, an attacker can modify the client-side behavior to bypass the protection mechanisms, resulting in potentially unexpected interactions between the client and server. The consequences will vary, depending on what the mechanisms are trying to protect.