CWE
Home > CWE List > VIEW LIST: CWE-635: Weaknesses Used by NVD (Draft 9)   View the CWE List

VIEW LIST: CWE-635: Weaknesses Used by NVD (Draft 9)

Weaknesses Used by NVD
View ID
Status: Draft

635 (View)

ObjectiveCWE nodes in this view (slice) are used by NIST to categorize vulnerabilities within NVD.
View Data
CWEs in this viewTotal CWEs
Total19out of695
Views0out of14
Categories6out of64
Weaknesses12out of605
Compound_Elements1out of12
Weakness ClassWeakness Class Code Injection - (94)
Category Configuration - (16)
Category Credentials Management - (255)
Compound Element: Composite Cross-Site Request Forgery (CSRF) - (352)
Category Cryptographic Issues - (310)
Weakness ClassWeakness Class Failure to Constrain Operations within the Bounds of an Allocated Memory Buffer - (119)
Weakness BaseWeakness Base Failure to Resolve Links Before File Access (aka 'Link Following') - (59)
Weakness BaseWeakness Base Failure to Sanitize Data into an OS Command (aka 'OS Command Injection') - (78)
Weakness BaseWeakness Base Failure to Sanitize Data into SQL Queries (aka 'SQL Injection') - (89)
Weakness BaseWeakness Base Failure to Sanitize Directives in a Web Page (aka 'Cross-site scripting' (XSS)) - (79)
Weakness ClassWeakness Class Information Leak (Information Disclosure) - (200)
Weakness ClassWeakness Class Insufficient Authentication - (287)
Weakness ClassWeakness Class Insufficient Input Validation - (20)
Category Numeric Errors - (189)
Weakness ClassWeakness Class Path Traversal - (22)
Category Permissions, Privileges, and Access Controls - (264)
Weakness ClassWeakness Class Race Condition - (362)
Category Resource Management Errors - (399)
Weakness BaseWeakness Base Uncontrolled Format String - (134)
Page Last Updated: April 11, 2008