CWE弱点浏览

Common Weakness Enumeration(通用弱点枚举)- 软件和硬件安全弱点的社区开发列表

总弱点数

969

分类数

410

视图数

56

CWE弱点列表 共 969 条
CWE ID 名称 抽象级别 状态 操作
CWE-95 Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection') Variant Incomplete 查看详情
CWE-96 Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') Base Draft 查看详情
CWE-97 Improper Neutralization of Server-Side Includes (SSI) Within a Web Page Variant Draft 查看详情
CWE-98 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') Variant Draft 查看详情
CWE-99 Improper Control of Resource Identifiers ('Resource Injection') Class Draft 查看详情
CWE-102 Struts: Duplicate Validation Forms Variant Incomplete 查看详情
CWE-103 Struts: Incomplete validate() Method Definition Variant Draft 查看详情
CWE-104 Struts: Form Bean Does Not Extend Validation Class Variant Draft 查看详情
CWE-105 Struts: Form Field Without Validator Variant Draft 查看详情
CWE-106 Struts: Plug-in Framework not in Use Variant Draft 查看详情
CWE-107 Struts: Unused Validation Form Variant Draft 查看详情
CWE-108 Struts: Unvalidated Action Form Variant Incomplete 查看详情
CWE-109 Struts: Validator Turned Off Variant Draft 查看详情
CWE-110 Struts: Validator Without Form Field Variant Draft 查看详情
CWE-111 Direct Use of Unsafe JNI Variant Draft 查看详情
CWE-112 Missing XML Validation Base Draft 查看详情
CWE-113 Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting') Variant Incomplete 查看详情
CWE-114 Process Control Class Incomplete 查看详情
CWE-115 Misinterpretation of Input Base Incomplete 查看详情
CWE-116 Improper Encoding or Escaping of Output Class Draft 查看详情