CWE-1107 符号常量定义的隔离不足

Insufficient Isolation of Symbolic Constant Definitions

结构: Simple

Abstraction: Base

状态: Incomplete

被利用可能性: unkown

基本描述

The source code uses symbolic constants, but it does not sufficiently place the definitions of these constants into a more centralized or isolated location.

扩展描述

This issue makes it more difficult to maintain the software, which indirectly affects security by making it more difficult or time-consuming to find and/or fix vulnerabilities. It also might make it easier to introduce vulnerabilities.

相关缺陷

  • cwe_Nature: ChildOf cwe_CWE_ID: 1078 cwe_View_ID: 1000 cwe_Ordinal: Primary

  • cwe_Nature: ChildOf cwe_CWE_ID: 1078 cwe_View_ID: 699 cwe_Ordinal: Primary

常见的影响

范围 影响 注释
Other Reduce Maintainability

引用