11 lines
951 B
Plaintext
11 lines
951 B
Plaintext
== See
|
|
|
|
* OWASP - https://owasp.org/www-project-top-ten/2017/A3_2017-Sensitive_Data_Exposure[Top 10 2017 Category A3 - Sensitive Data Exposure]
|
|
* CWE - https://cwe.mitre.org/data/definitions/732[CWE-732 - Incorrect Permission Assignment for Critical Resource]
|
|
* CWE - https://cwe.mitre.org/data/definitions/73[CWE-73 - External Control of File Name or Path]
|
|
* CWE - https://cwe.mitre.org/data/definitions/20[CWE-20 - Improper Input Validation ]
|
|
* CWE - https://cwe.mitre.org/data/definitions/22[CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')]
|
|
* CWE - https://cwe.mitre.org/data/definitions/400[CWE-400 - Uncontrolled Resource Consumption ('Resource Exhaustion')]
|
|
* CWE - https://cwe.mitre.org/data/definitions/538[CWE-538 - File and Directory Information Exposure]
|
|
* CWE - https://cwe.mitre.org/data/definitions/403[CWE-403 - Exposure of File Descriptor to Unintended Control Sphere ('File Descriptor Leak')]
|