PolicyKit 0.103 sets the AdminIdentities to "wheel" by default, which allows local users in the wheel group to gain root privileges without authentication.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.