数据管理终端
← 返回分析系统

CWE 弱点

查询就绪
CWE ID名称抽象级别结构状态操作
CWE-281Improper Preservation of PermissionsBaseSimpleDraft
CWE-282Improper Ownership ManagementClassSimpleDraft
CWE-283Unverified OwnershipBaseSimpleDraft
CWE-284Improper Access ControlPillarSimpleIncomplete
CWE-285Improper AuthorizationClassSimpleDraft
CWE-286Incorrect User ManagementClassSimpleIncomplete
CWE-287Improper AuthenticationClassSimpleDraft
CWE-288Authentication Bypass Using an Alternate Path or ChannelBaseSimpleIncomplete
CWE-289Authentication Bypass by Alternate NameBaseSimpleIncomplete
CWE-29Path Traversal: '\..\filename'VariantSimpleIncomplete
CWE-290Authentication Bypass by SpoofingBaseSimpleIncomplete
CWE-291Reliance on IP Address for AuthenticationVariantSimpleIncomplete
CWE-292DEPRECATED: Trusting Self-reported DNS NameVariantSimpleDeprecated
CWE-293Using Referer Field for AuthenticationVariantSimpleDraft
CWE-294Authentication Bypass by Capture-replayBaseSimpleIncomplete
CWE-295Improper Certificate ValidationBaseSimpleDraft
CWE-296Improper Following of a Certificate's Chain of TrustBaseSimpleDraft
CWE-297Improper Validation of Certificate with Host MismatchVariantSimpleIncomplete
CWE-298Improper Validation of Certificate ExpirationVariantSimpleDraft
CWE-299Improper Check for Certificate RevocationBaseSimpleDraft
TOTAL 969 / PAGE 22 OF 49