TOSS must require users to reauthenticate for privilege escalation.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-252958
TOSS-04-020180
SV-252958r1050789_rule
Medium
Description
Without reauthentication, users may access resources or perform tasks for which they do not have authorization.
When operating systems provide the capability to escalate a functional capability, it is critical the user reauthenticate.