View-629: Weaknesses in OWASP Top Ten (2007)

admin 2021年12月4日16:19:52评论99 views字数 1544阅读5分8秒阅读模式

View-629: Weaknesses in OWASP Top Ten (2007)

ID: 629

Type: Graph

Status: Obsolete

Objective

CWE nodes in this view (graph) are associated with the OWASP Top Ten, as released in 2007. This view is considered obsolete as a newer version of the OWASP Top Ten is available.

Audience

Software Developers

This view outlines the most important issues as identified by the OWASP Top Ten (2007 version), providing a good starting point for web application developers who want to code more securely.

Software Customers

This view outlines the most important issues as identified by the OWASP Top Ten (2007 version), providing customers with a way of asking their software developers to follow minimum expectations for secure code.

Educators

Since the OWASP Top Ten covers the most frequently encountered issues, this view can be used by educators as training material for students.

Membership

CWE-ID title
CWE-712 OWASP Top Ten 2007 Category A1 - Cross Site Scripting (XSS)
CWE-713 OWASP Top Ten 2007 Category A2 - Injection Flaws
CWE-714 OWASP Top Ten 2007 Category A3 - Malicious File Execution
CWE-715 OWASP Top Ten 2007 Category A4 - Insecure Direct Object Reference
CWE-716 OWASP Top Ten 2007 Category A5 - Cross Site Request Forgery (CSRF)
CWE-717 OWASP Top Ten 2007 Category A6 - Information Leakage and Improper Error Handling
CWE-718 OWASP Top Ten 2007 Category A7 - Broken Authentication and Session Management
CWE-719 OWASP Top Ten 2007 Category A8 - Insecure Cryptographic Storage
CWE-720 OWASP Top Ten 2007 Category A9 - Insecure Communications
CWE-721 OWASP Top Ten 2007 Category A10 - Failure to Restrict URL Access

Notes

Relationship

The relationships in this view are a direct extraction of the CWE mappings that are in the 2007 OWASP document. CWE has changed since the release of that document.

引用

REF-519 Top 10 2007

文章来源于互联网:scap中文网

  • 左青龙
  • 微信扫一扫
  • weinxin
  • 右白虎
  • 微信扫一扫
  • weinxin
admin
  • 本文由 发表于 2021年12月4日16:19:52
  • 转载请保留本文链接(CN-SEC中文网:感谢原作者辛苦付出):
                   View-629: Weaknesses in OWASP Top Ten (2007)https://cn-sec.com/archives/613421.html

发表评论

匿名网友 填写信息