| CWE |
Name |
|
Actions |
| CWE-254 |
7PK - Security Features |
|
|
| CWE-253 |
Incorrect Check of Function Return Value |
|
|
| CWE-252 |
Unchecked Return Value |
|
|
| CWE-251 |
Often Misused: String Management |
|
|
| CWE-250 |
Execution with Unnecessary Privileges |
|
|
| CWE-25 |
Path Traversal: '/../filedir' |
|
|
| CWE-249 |
DEPRECATED: Often Misused: Path Manipulation |
|
|
| CWE-248 |
Uncaught Exception |
|
|
| CWE-247 |
DEPRECATED: Reliance on DNS Lookups in a Security Decision |
|
|
| CWE-246 |
J2EE Bad Practices: Direct Use of Sockets |
|
|
| CWE-245 |
J2EE Bad Practices: Direct Management of Connections |
|
|
| CWE-244 |
Improper Clearing of Heap Memory Before Release ('Heap Inspection') |
|
|
| CWE-243 |
Creation of chroot Jail Without Changing Working Directory |
|
|
| CWE-242 |
Use of Inherently Dangerous Function |
|
|
| CWE-241 |
Improper Handling of Unexpected Data Type |
|
|
| CWE-240 |
Improper Handling of Inconsistent Structural Elements |
|
|
| CWE-24 |
Path Traversal: '../filedir' |
|
|
| CWE-239 |
Failure to Handle Incomplete Element |
|
|
| CWE-238 |
Improper Handling of Incomplete Structural Elements |
|
|
| CWE-237 |
Improper Handling of Structural Elements |
|
|
| CWE-236 |
Improper Handling of Undefined Parameters |
|
|
| CWE-235 |
Improper Handling of Extra Parameters |
|
|
| CWE-234 |
Failure to Handle Missing Parameter |
|
|
| CWE-233 |
Improper Handling of Parameters |
|
|
| CWE-232 |
Improper Handling of Undefined Values |
|
|
| CWE-231 |
Improper Handling of Extra Values |
|
|
| CWE-230 |
Improper Handling of Missing Values |
|
|
| CWE-23 |
Relative Path Traversal |
|
|
| CWE-229 |
Improper Handling of Values |
|
|
| CWE-228 |
Improper Handling of Syntactically Invalid Structure |
|
|
| CWE-227 |
7PK - API Abuse |
|
|
| CWE-226 |
Sensitive Information in Resource Not Removed Before Reuse |
|
|
| CWE-225 |
DEPRECATED: General Information Management Problems |
|
|
| CWE-224 |
Obscured Security-relevant Information by Alternate Name |
|
|
| CWE-223 |
Omission of Security-relevant Information |
|
|
| CWE-222 |
Truncation of Security-relevant Information |
|
|
| CWE-221 |
Information Loss or Omission |
|
|
| CWE-220 |
Storage of File With Sensitive Data Under FTP Root |
|
|
| CWE-22 |
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
|
|
| CWE-219 |
Storage of File with Sensitive Data Under Web Root |
|
|