CWE 弱点
CWE 基础字段与弱点分类查询。
| CWE ID | 名称 | 抽象级别 | 结构 | 状态 | 操作 |
|---|---|---|---|---|---|
| CWE-585 | Empty Synchronized Block | Variant | Simple | Draft | |
| CWE-586 | Explicit Call to Finalize() | Base | Simple | Draft | |
| CWE-587 | Assignment of a Fixed Address to a Pointer | Variant | Simple | Draft | |
| CWE-588 | Attempt to Access Child of a Non-structure Pointer | Variant | Simple | Incomplete | |
| CWE-589 | Call to Non-ubiquitous API | Variant | Simple | Incomplete | |
| CWE-59 | Improper Link Resolution Before File Access ('Link Following') | Base | Simple | Draft | |
| CWE-590 | Free of Memory not on the Heap | Variant | Simple | Incomplete | |
| CWE-591 | Sensitive Data Storage in Improperly Locked Memory | Variant | Simple | Draft | |
| CWE-592 | DEPRECATED: Authentication Bypass Issues | Class | Simple | Deprecated | |
| CWE-593 | Authentication Bypass: OpenSSL CTX Object Modified after SSL Objects are Created | Variant | Simple | Draft | |
| CWE-594 | J2EE Framework: Saving Unserializable Objects to Disk | Variant | Simple | Incomplete | |
| CWE-595 | Comparison of Object References Instead of Object Contents | Variant | Simple | Incomplete | |
| CWE-596 | DEPRECATED: Incorrect Semantic Object Comparison | Base | Simple | Deprecated | |
| CWE-597 | Use of Wrong Operator in String Comparison | Variant | Simple | Draft | |
| CWE-598 | Use of HTTP Request With Sensitive Query String | Variant | Simple | Draft | |
| CWE-599 | Missing Validation of OpenSSL Certificate | Variant | Simple | Incomplete | |
| CWE-6 | J2EE Misconfiguration: Insufficient Session-ID Length | Variant | Simple | Incomplete | |
| CWE-600 | Uncaught Exception in Servlet | Variant | Simple | Draft | |
| CWE-601 | URL Redirection to Untrusted Site ('Open Redirect') | Base | Simple | Draft | |
| CWE-602 | Client-Side Enforcement of Server-Side Security | Class | Simple | Draft |