CWE-508 非传播性的恶意代码

Non-Replicating Malicious Code

结构: Simple

Abstraction: Base

状态: Incomplete

被利用可能性: unkown

基本描述

Non-replicating malicious code only resides on the target system or software that is attacked; it does not attempt to spread to other systems.

相关缺陷

  • cwe_Nature: ChildOf cwe_CWE_ID: 507 cwe_View_ID: 1000 cwe_Ordinal: Primary

  • cwe_Nature: ChildOf cwe_CWE_ID: 507 cwe_View_ID: 699 cwe_Ordinal: Primary

常见的影响

范围 影响 注释
['Confidentiality', 'Integrity', 'Availability'] Execute Unauthorized Code or Commands

可能的缓解方案

Operation

策略:

Antivirus software can help mitigate known malicious code.

Installation

策略:

Verify the integrity of the software that is being installed.

分类映射

映射的分类名 ImNode ID Fit Mapped Node Name
Landwehr Non-Replicating