Categories (CWE)

Search

Categories (CWE)

CWE Name Actions
CWE-254 7PK - Security Features
CWE-253 Incorrect Check of Function Return Value
CWE-252 Unchecked Return Value
CWE-251 Often Misused: String Management
CWE-250 Execution with Unnecessary Privileges
CWE-25 Path Traversal: '/../filedir'
CWE-249 DEPRECATED: Often Misused: Path Manipulation
CWE-248 Uncaught Exception
CWE-247 DEPRECATED: Reliance on DNS Lookups in a Security Decision
CWE-246 J2EE Bad Practices: Direct Use of Sockets
CWE-245 J2EE Bad Practices: Direct Management of Connections
CWE-244 Improper Clearing of Heap Memory Before Release ('Heap Inspection')
CWE-243 Creation of chroot Jail Without Changing Working Directory
CWE-242 Use of Inherently Dangerous Function
CWE-241 Improper Handling of Unexpected Data Type
CWE-240 Improper Handling of Inconsistent Structural Elements
CWE-24 Path Traversal: '../filedir'
CWE-239 Failure to Handle Incomplete Element
CWE-238 Improper Handling of Incomplete Structural Elements
CWE-237 Improper Handling of Structural Elements
CWE-236 Improper Handling of Undefined Parameters
CWE-235 Improper Handling of Extra Parameters
CWE-234 Failure to Handle Missing Parameter
CWE-233 Improper Handling of Parameters
CWE-232 Improper Handling of Undefined Values
CWE-231 Improper Handling of Extra Values
CWE-230 Improper Handling of Missing Values
CWE-23 Relative Path Traversal
CWE-229 Improper Handling of Values
CWE-228 Improper Handling of Syntactically Invalid Structure
CWE-227 7PK - API Abuse
CWE-226 Sensitive Information in Resource Not Removed Before Reuse
CWE-225 DEPRECATED: General Information Management Problems
CWE-224 Obscured Security-relevant Information by Alternate Name
CWE-223 Omission of Security-relevant Information
CWE-222 Truncation of Security-relevant Information
CWE-221 Information Loss or Omission
CWE-220 Storage of File With Sensitive Data Under FTP Root
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-219 Storage of File with Sensitive Data Under Web Root