CWE

Common Weakness Enumeration

A community-developed list of SW & HW weaknesses that can become vulnerabilities

New to CWE? click here!
CWE Most Important Hardware Weaknesses
CWE Top 25 Most Dangerous Weaknesses
Home > CWE List > CWE-292: DEPRECATED: Trusting Self-reported DNS Name (4.20)  
ID

CWE-292: DEPRECATED: Trusting Self-reported DNS Name

Weakness ID: 292
Vulnerability Mapping: PROHIBITED This CWE ID must not be used to map to real-world vulnerabilities
Abstraction: Variant Variant - a weakness that is linked to a certain type of product, typically involving a specific language or technology. More specific than a Base weakness. Variant level weaknesses typically describe issues in terms of 3 to 5 of the following dimensions: behavior, property, technology, language, and resource.
View customized information:
For users who are interested in more notional aspects of a weakness. Example: educators, technical writers, and project/program managers. For users who are concerned with the practical application and details about the nature of a weakness and how to prevent it from happening. Example: tool developers, security researchers, pen-testers, incident response analysts. For users who are mapping an issue to CWE/CAPEC IDs, i.e., finding the most appropriate CWE for a specific issue (e.g., a CVE record). Example: tool developers, security researchers. For users who wish to see all available information for the CWE/CAPEC entry. For users who want to customize what details are displayed.
×

Edit Custom Filter


+ Description
This entry has been deprecated because it was a duplicate of CWE-350. All content has been transferred to CWE-350.
+ Vulnerability Mapping Notes
Usage PROHIBITED
(this CWE ID must not be used to map to real-world vulnerabilities)
Reason Deprecated

Rationale

This CWE has been deprecated.

Comments

See description and name for possible suggestions of other CWEs to consider.
+ Content History
+ Submissions
Submission Date Submitter Organization
2006-07-19
(CWE Draft 3, 2006-07-19)
CLASP
+ Modifications
Modification Date Modifier Organization
2023-06-29
(CWE 4.12, 2023-06-29)
CWE Content Team MITRE
updated Mapping_Notes
2021-07-20
(CWE 4.5, 2021-07-20)
CWE Content Team MITRE
updated Name
2021-03-15
(CWE 4.4, 2021-03-15)
CWE Content Team MITRE
updated Likelihood_of_Exploit, Taxonomy_Mappings
2014-07-30
(CWE 2.8, 2014-07-31)
CWE Content Team MITRE
updated Taxonomy_Mappings
2013-07-17
(CWE 2.5, 2013-07-17)
CWE Content Team MITRE
updated Applicable_Platforms, Common_Consequences, Demonstrative_Examples, Description, Name, Observed_Examples, Other_Notes, Potential_Mitigations, Related_Attack_Patterns, Relationships, Taxonomy_Mappings, Time_of_Introduction, Type
2013-06-23
(CWE 2.5, 2013-07-17)
CWE Content Team MITRE
CWE-247 and CWE-292 deprecated and merged into CWE-350 to address duplicates.
2012-05-11
(CWE 2.2, 2012-05-15)
CWE Content Team MITRE
updated Demonstrative_Examples, Relationships
2011-06-01
(CWE 1.13, 2011-06-01)
CWE Content Team MITRE
updated Common_Consequences
2010-09-27
(CWE 1.10, 2010-09-27)
CWE Content Team MITRE
updated Potential_Mitigations
2009-10-29
(CWE 1.6, 2009-10-29)
CWE Content Team MITRE
updated Observed_Examples
2009-05-27
(CWE 1.4, 2009-05-27)
CWE Content Team MITRE
updated Demonstrative_Examples
2008-09-08
(CWE 1.0, 2008-09-09)
CWE Content Team MITRE
updated Common_Consequences, Relationships, Other_Notes, Taxonomy_Mappings
+ Previous Entry Names
Change Date Previous Entry Name
2021-07-20 DEPRECATED (Duplicate): Trusting Self-reported DNS Name
2013-07-17 Trusting Self-reported DNS Name
Page Last Updated: April 30, 2026