CWE

Common Weakness Enumeration

A Community-Developed List of Software Weakness Types

CWE/SANS Top 25 Most Dangerous Software Errors
Home > CWE List > CWE- Individual Dictionary Definition (2.11)  
ID

CWE CATEGORY: SFP Secondary Cluster: Channel Attack

Category ID: 956
Status: Incomplete
+ Description

Description Summary

This category identifies Software Fault Patterns (SFPs) within the Channel Attack cluster.
+ Relationships
NatureTypeIDNameView(s) this relationship pertains toView(s)
ChildOfCategoryCategory902SFP Primary Cluster: Channel
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness BaseWeakness Base290Authentication Bypass by Spoofing
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness BaseWeakness Base294Authentication Bypass by Capture-replay
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness ClassWeakness Class300Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness VariantWeakness Variant301Reflection Attack in an Authentication Protocol
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness BaseWeakness Base419Unprotected Primary Channel
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness BaseWeakness Base420Unprotected Alternate Channel
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness BaseWeakness Base421Race Condition During Access to Alternate Channel
Software Fault Pattern (SFP) Clusters (primary)888
ParentOfWeakness ClassWeakness Class441Unintended Proxy or Intermediary ('Confused Deputy')
Software Fault Pattern (SFP) Clusters (primary)888
+ Content History
Submissions
Submission DateSubmitterOrganizationSource
2014-07-29Internal CWE Team

More information is available — Please select a different filter.
Page Last Updated: May 05, 2017