Categories (CWE)

Search

Categories (CWE)

CWE Name Actions
CWE-738 CERT C Secure Coding Standard (2008) Chapter 5 - Integers (INT)
CWE-737 CERT C Secure Coding Standard (2008) Chapter 4 - Expressions (EXP)
CWE-736 CERT C Secure Coding Standard (2008) Chapter 3 - Declarations and Initialization (DCL)
CWE-735 CERT C Secure Coding Standard (2008) Chapter 2 - Preprocessor (PRE)
CWE-733 Compiler Optimization Removal or Modification of Security-critical Code
CWE-732 Incorrect Permission Assignment for Critical Resource
CWE-731 OWASP Top Ten 2004 Category A10 - Insecure Configuration Management
CWE-730 OWASP Top Ten 2004 Category A9 - Denial of Service
CWE-73 External Control of File Name or Path
CWE-729 OWASP Top Ten 2004 Category A8 - Insecure Storage
CWE-728 OWASP Top Ten 2004 Category A7 - Improper Error Handling
CWE-727 OWASP Top Ten 2004 Category A6 - Injection Flaws
CWE-726 OWASP Top Ten 2004 Category A5 - Buffer Overflows
CWE-725 OWASP Top Ten 2004 Category A4 - Cross-Site Scripting (XSS) Flaws
CWE-724 OWASP Top Ten 2004 Category A3 - Broken Authentication and Session Management
CWE-723 OWASP Top Ten 2004 Category A2 - Broken Access Control
CWE-722 OWASP Top Ten 2004 Category A1 - Unvalidated Input
CWE-721 OWASP Top Ten 2007 Category A10 - Failure to Restrict URL Access
CWE-720 OWASP Top Ten 2007 Category A9 - Insecure Communications
CWE-72 Improper Handling of Apple HFS+ Alternate Data Stream Path
CWE-719 OWASP Top Ten 2007 Category A8 - Insecure Cryptographic Storage
CWE-718 OWASP Top Ten 2007 Category A7 - Broken Authentication and Session Management
CWE-717 OWASP Top Ten 2007 Category A6 - Information Leakage and Improper Error Handling
CWE-716 OWASP Top Ten 2007 Category A5 - Cross Site Request Forgery (CSRF)
CWE-715 OWASP Top Ten 2007 Category A4 - Insecure Direct Object Reference
CWE-714 OWASP Top Ten 2007 Category A3 - Malicious File Execution
CWE-713 OWASP Top Ten 2007 Category A2 - Injection Flaws
CWE-712 OWASP Top Ten 2007 Category A1 - Cross Site Scripting (XSS)
CWE-710 Improper Adherence to Coding Standards
CWE-71 DEPRECATED: Apple '.DS_Store'
CWE-708 Incorrect Ownership Assignment
CWE-707 Improper Neutralization
CWE-706 Use of Incorrectly-Resolved Name or Reference
CWE-705 Incorrect Control Flow Scoping
CWE-704 Incorrect Type Conversion or Cast
CWE-703 Improper Check or Handling of Exceptional Conditions
CWE-702 No name
CWE-701 No name
CWE-70 DEPRECATED: Mac Virtual File Problems
CWE-7 J2EE Misconfiguration: Missing Custom Error Page