CWE 弱点
CWE 基础字段与弱点分类查询。
| CWE ID | 名称 | 抽象级别 | 结构 | 状态 | 操作 |
|---|---|---|---|---|---|
| CWE-648 | Incorrect Use of Privileged APIs | Base | Simple | Incomplete | |
| CWE-649 | Reliance on Obfuscation or Encryption of Security-Relevant Inputs without Integrity Checking | Base | Simple | Incomplete | |
| CWE-65 | Windows Hard Link | Variant | Simple | Incomplete | |
| CWE-650 | Trusting HTTP Permission Methods on the Server Side | Variant | Simple | Incomplete | |
| CWE-651 | Exposure of WSDL File Containing Sensitive Information | Variant | Simple | Incomplete | |
| CWE-652 | Improper Neutralization of Data within XQuery Expressions ('XQuery Injection') | Base | Simple | Incomplete | |
| CWE-653 | Improper Isolation or Compartmentalization | Class | Simple | Draft | |
| CWE-654 | Reliance on a Single Factor in a Security Decision | Base | Simple | Draft | |
| CWE-655 | Insufficient Psychological Acceptability | Class | Simple | Draft | |
| CWE-656 | Reliance on Security Through Obscurity | Class | Simple | Draft | |
| CWE-657 | Violation of Secure Design Principles | Class | Simple | Draft | |
| CWE-66 | Improper Handling of File Names that Identify Virtual Resources | Base | Simple | Draft | |
| CWE-662 | Improper Synchronization | Class | Simple | Draft | |
| CWE-663 | Use of a Non-reentrant Function in a Concurrent Context | Base | Simple | Draft | |
| CWE-664 | Improper Control of a Resource Through its Lifetime | Pillar | Simple | Draft | |
| CWE-665 | Improper Initialization | Class | Simple | Draft | |
| CWE-666 | Operation on Resource in Wrong Phase of Lifetime | Class | Simple | Draft | |
| CWE-667 | Improper Locking | Class | Simple | Draft | |
| CWE-668 | Exposure of Resource to Wrong Sphere | Class | Simple | Draft | |
| CWE-669 | Incorrect Resource Transfer Between Spheres | Class | Simple | Draft |