logo

MITRE CWE

Search and filter objects.

IDObject NameStix TypeType
newCWE-520.NET Misconfiguration: Use of ImpersonationweaknessWeakness
newCWE-7512009 Top 25 - Insecure Interaction Between ComponentsgroupingGrouping
newCWE-7532009 Top 25 - Porous DefensesgroupingGrouping
newCWE-7522009 Top 25 - Risky Resource ManagementgroupingGrouping
newCWE-8012010 Top 25 - Insecure Interaction Between ComponentsgroupingGrouping
newCWE-8032010 Top 25 - Porous DefensesgroupingGrouping
newCWE-8022010 Top 25 - Risky Resource ManagementgroupingGrouping
newCWE-8082010 Top 25 - Weaknesses On the CuspgroupingGrouping
newCWE-8642011 Top 25 - Insecure Interaction Between ComponentsgroupingGrouping
newCWE-8662011 Top 25 - Porous DefensesgroupingGrouping
newCWE-8652011 Top 25 - Risky Resource ManagementgroupingGrouping
newCWE-8672011 Top 25 - Weaknesses On the CuspgroupingGrouping
newCWE-14332025 MIHW Supplement: Expert InsightsgroupingGrouping
newCWE-2277PK - API AbusegroupingGrouping
newCWE-3987PK - Code QualitygroupingGrouping
newCWE-4857PK - EncapsulationgroupingGrouping
newCWE-27PK - EnvironmentgroupingGrouping
newCWE-3887PK - ErrorsgroupingGrouping
newCWE-10057PK - Input Validation and RepresentationgroupingGrouping
newCWE-2547PK - Security FeaturesgroupingGrouping
newCWE-3617PK - Time and StategroupingGrouping
newCWE-36Absolute Path TraversalweaknessWeakness
newCWE-349Acceptance of Extraneous Untrusted Data With Trusted DataweaknessWeakness
newCWE-1280Access Control Check Implemented After Asset is AccessedweaknessWeakness
newCWE-788Access of Memory Location After End of BufferweaknessWeakness
newCWE-786Access of Memory Location Before Start of BufferweaknessWeakness
newCWE-843Access of Resource Using Incompatible Type ('Type Confusion')weaknessWeakness
newCWE-824Access of Uninitialized PointerweaknessWeakness
newCWE-767Access to Critical Private Variable via Public MethodweaknessWeakness
newCWE-489Active Debug CodeweaknessWeakness
newCWE-464Addition of Data Structure SentinelweaknessWeakness
newCWE-774Allocation of File Descriptors or Handles Without Limits or ThrottlingweaknessWeakness
newCWE-770Allocation of Resources Without Limits or ThrottlingweaknessWeakness
newCWE-670Always-Incorrect Control Flow ImplementationweaknessWeakness
newCWE-1228API / Function ErrorsgroupingGrouping
newCWE-1249Application-Level Admin Tool with Inconsistent View of Underlying Operating SystemweaknessWeakness
newCWE-1008Architectural ConceptsgroupingGrouping
newCWE-1044Architecture with Number of Horizontal Layers Outside of Expected RangeweaknessWeakness
newCWE-582Array Declared Public, Final, and StaticweaknessWeakness
newCWE-11ASP.NET Misconfiguration: Creating Debug BinaryweaknessWeakness
newCWE-1174ASP.NET Misconfiguration: Improper Model ValidationweaknessWeakness
newCWE-12ASP.NET Misconfiguration: Missing Custom Error PageweaknessWeakness
newCWE-554ASP.NET Misconfiguration: Not Using Input Validation FrameworkweaknessWeakness
newCWE-13ASP.NET Misconfiguration: Password in Configuration FileweaknessWeakness
newCWE-556ASP.NET Misconfiguration: Use of Identity ImpersonationweaknessWeakness
newCWE-481Assigning instead of ComparingweaknessWeakness
newCWE-587Assignment of a Fixed Address to a PointerweaknessWeakness
newCWE-563Assignment to Variable without UseweaknessWeakness
newCWE-1282Assumed-Immutable Data is Stored in Writable MemoryweaknessWeakness
newCWE-405Asymmetric Resource Consumption (Amplification)weaknessWeakness

1–50 of 1355