CWE 弱点
CWE 基础字段与弱点分类查询。
| CWE ID | 名称 | 抽象级别 | 结构 | 状态 | 操作 |
|---|---|---|---|---|---|
| CWE-506 | Embedded Malicious Code | Class | Simple | Incomplete | |
| CWE-507 | Trojan Horse | Base | Simple | Incomplete | |
| CWE-508 | Non-Replicating Malicious Code | Base | Simple | Incomplete | |
| CWE-509 | Replicating Malicious Code (Virus or Worm) | Base | Simple | Incomplete | |
| CWE-51 | Path Equivalence: '/multiple//internal/slash' | Variant | Simple | Incomplete | |
| CWE-510 | Trapdoor | Base | Simple | Incomplete | |
| CWE-511 | Logic/Time Bomb | Base | Simple | Incomplete | |
| CWE-512 | Spyware | Base | Simple | Incomplete | |
| CWE-514 | Covert Channel | Class | Simple | Incomplete | |
| CWE-515 | Covert Storage Channel | Base | Simple | Incomplete | |
| CWE-516 | DEPRECATED: Covert Timing Channel | Base | Simple | Deprecated | |
| CWE-52 | Path Equivalence: '/multiple/trailing/slash//' | Variant | Simple | Incomplete | |
| CWE-520 | .NET Misconfiguration: Use of Impersonation | Variant | Simple | Incomplete | |
| CWE-521 | Weak Password Requirements | Base | Simple | Draft | |
| CWE-522 | Insufficiently Protected Credentials | Class | Simple | Incomplete | |
| CWE-523 | Unprotected Transport of Credentials | Base | Simple | Incomplete | |
| CWE-524 | Use of Cache Containing Sensitive Information | Base | Simple | Incomplete | |
| CWE-525 | Use of Web Browser Cache Containing Sensitive Information | Variant | Simple | Incomplete | |
| CWE-526 | Cleartext Storage of Sensitive Information in an Environment Variable | Variant | Simple | Incomplete | |
| CWE-527 | Exposure of Version-Control Repository to an Unauthorized Control Sphere | Variant | Simple | Incomplete |