| CWE |
Name |
|
Actions |
| CWE-738 |
CERT C Secure Coding Standard (2008) Chapter 5 - Integers (INT) |
|
|
| CWE-737 |
CERT C Secure Coding Standard (2008) Chapter 4 - Expressions (EXP) |
|
|
| CWE-736 |
CERT C Secure Coding Standard (2008) Chapter 3 - Declarations and Initialization (DCL) |
|
|
| CWE-735 |
CERT C Secure Coding Standard (2008) Chapter 2 - Preprocessor (PRE) |
|
|
| CWE-733 |
Compiler Optimization Removal or Modification of Security-critical Code |
|
|
| CWE-732 |
Incorrect Permission Assignment for Critical Resource |
|
|
| CWE-731 |
OWASP Top Ten 2004 Category A10 - Insecure Configuration Management |
|
|
| CWE-730 |
OWASP Top Ten 2004 Category A9 - Denial of Service |
|
|
| CWE-73 |
External Control of File Name or Path |
|
|
| CWE-729 |
OWASP Top Ten 2004 Category A8 - Insecure Storage |
|
|
| CWE-728 |
OWASP Top Ten 2004 Category A7 - Improper Error Handling |
|
|
| CWE-727 |
OWASP Top Ten 2004 Category A6 - Injection Flaws |
|
|
| CWE-726 |
OWASP Top Ten 2004 Category A5 - Buffer Overflows |
|
|
| CWE-725 |
OWASP Top Ten 2004 Category A4 - Cross-Site Scripting (XSS) Flaws |
|
|
| CWE-724 |
OWASP Top Ten 2004 Category A3 - Broken Authentication and Session Management |
|
|
| CWE-723 |
OWASP Top Ten 2004 Category A2 - Broken Access Control |
|
|
| CWE-722 |
OWASP Top Ten 2004 Category A1 - Unvalidated Input |
|
|
| CWE-721 |
OWASP Top Ten 2007 Category A10 - Failure to Restrict URL Access |
|
|
| CWE-720 |
OWASP Top Ten 2007 Category A9 - Insecure Communications |
|
|
| CWE-72 |
Improper Handling of Apple HFS+ Alternate Data Stream Path |
|
|
| CWE-719 |
OWASP Top Ten 2007 Category A8 - Insecure Cryptographic Storage |
|
|
| CWE-718 |
OWASP Top Ten 2007 Category A7 - Broken Authentication and Session Management |
|
|
| CWE-717 |
OWASP Top Ten 2007 Category A6 - Information Leakage and Improper Error Handling |
|
|
| CWE-716 |
OWASP Top Ten 2007 Category A5 - Cross Site Request Forgery (CSRF) |
|
|
| CWE-715 |
OWASP Top Ten 2007 Category A4 - Insecure Direct Object Reference |
|
|
| CWE-714 |
OWASP Top Ten 2007 Category A3 - Malicious File Execution |
|
|
| CWE-713 |
OWASP Top Ten 2007 Category A2 - Injection Flaws |
|
|
| CWE-712 |
OWASP Top Ten 2007 Category A1 - Cross Site Scripting (XSS) |
|
|
| CWE-710 |
Improper Adherence to Coding Standards |
|
|
| CWE-71 |
DEPRECATED: Apple '.DS_Store' |
|
|
| CWE-708 |
Incorrect Ownership Assignment |
|
|
| CWE-707 |
Improper Neutralization |
|
|
| CWE-706 |
Use of Incorrectly-Resolved Name or Reference |
|
|
| CWE-705 |
Incorrect Control Flow Scoping |
|
|
| CWE-704 |
Incorrect Type Conversion or Cast |
|
|
| CWE-703 |
Improper Check or Handling of Exceptional Conditions |
|
|
| CWE-702 |
No name |
|
|
| CWE-701 |
No name |
|
|
| CWE-70 |
DEPRECATED: Mac Virtual File Problems |
|
|
| CWE-7 |
J2EE Misconfiguration: Missing Custom Error Page |
|
|