CWE 弱点
CWE 基础字段与弱点分类查询。
| CWE ID | 名称 | 抽象级别 | 结构 | 状态 | 操作 |
|---|---|---|---|---|---|
| CWE-1385 | Missing Origin Validation in WebSockets | Variant | Simple | Incomplete | |
| CWE-1386 | Insecure Operation on Windows Junction / Mount Point | Base | Simple | Incomplete | |
| CWE-1389 | Incorrect Parsing of Numbers with Different Radices | Base | Simple | Incomplete | |
| CWE-1390 | Weak Authentication | Class | Simple | Incomplete | |
| CWE-1391 | Use of Weak Credentials | Class | Simple | Incomplete | |
| CWE-1392 | Use of Default Credentials | Base | Simple | Incomplete | |
| CWE-1393 | Use of Default Password | Base | Simple | Incomplete | |
| CWE-1394 | Use of Default Cryptographic Key | Base | Simple | Incomplete | |
| CWE-1395 | Dependency on Vulnerable Third-Party Component | Class | Simple | Incomplete | |
| CWE-14 | Compiler Removal of Code to Clear Buffers | Variant | Simple | Draft | |
| CWE-140 | Improper Neutralization of Delimiters | Base | Simple | Draft | |
| CWE-141 | Improper Neutralization of Parameter/Argument Delimiters | Variant | Simple | Draft | |
| CWE-1419 | Incorrect Initialization of Resource | Class | Simple | Incomplete | |
| CWE-142 | Improper Neutralization of Value Delimiters | Variant | Simple | Draft | |
| CWE-1420 | Exposure of Sensitive Information during Transient Execution | Base | Simple | Incomplete | |
| CWE-1421 | Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution | Base | Simple | Incomplete | |
| CWE-1422 | Exposure of Sensitive Information caused by Incorrect Data Forwarding during Transient Execution | Base | Simple | Incomplete | |
| CWE-1423 | Exposure of Sensitive Information caused by Shared Microarchitectural Predictor State that Influences Transient Execution | Base | Simple | Incomplete | |
| CWE-1426 | Improper Validation of Generative AI Output | Base | Simple | Incomplete | |
| CWE-1427 | Improper Neutralization of Input Used for LLM Prompting | Base | Simple | Incomplete |