Category-815: OWASP Top Ten 2010 Category A6 - Security Misconfiguration

ID: 815 Status: Obsolete

Summary

Weaknesses in this category are related to the A6 category in the OWASP Top Ten 2010.

Membership

ID NAME
CWE-209 通过错误消息导致的信息暴露
CWE-219 Web根目录下的敏感数据
CWE-250 带着不必要的权限执行
CWE-538 文件和路径信息暴露
CWE-552 对外部实体的文件或目录可访问
CWE-732 关键资源的不正确权限授予

References

REF-766 Top 10 2010-A6-Security Misconfiguration