Deprecated Entries

A view in the Common Weakness Enumeration published by The MITRE Corporation.


Objective

Views in the Common Weakness Enumeration (CWE) represent one perspective with which to consider a set of weaknesses.

CWE nodes in this view (slice) have been deprecated. There should be a reference pointing to the replacement in each deprecated weakness.

Weaknesses

Deprecated or Obsolete

DEPRECATED: Apple '.DS_Store'

This entry has been deprecated as it represents a specific observed example of a UNIX Hard Link weakness type rather than its own individual weakness type. Please refe...

DEPRECATED: Authentication Bypass Issues

This weakness has been deprecated because it covered redundant concepts already described in CWE-287.

DEPRECATED: Containment Errors (Container Errors)

This entry has been deprecated, as it was not effective as a weakness and was structured more like a category. In addition, the name is inappropriate, since the "conta...

DEPRECATED: Covert Timing Channel

This weakness can be found at CWE-385.

DEPRECATED: Failure to Protect Stored Data from Modification

This entry has been deprecated because it incorporated and confused multiple weaknesses. The issues formerly covered in this entry can be found at CWE-766 and CWE-767.

DEPRECATED: Failure to provide confidentiality for stored data

This weakness has been deprecated because it was a duplicate of CWE-493. All content has been transferred to CWE-493.

DEPRECATED: General Information Management Problems

This weakness can be found at CWE-199.

DEPRECATED: HTTP response splitting

This weakness can be found at CWE-113.

DEPRECATED: Improper Sanitization of Custom Special Characters

This entry has been deprecated. It originally came from PLOVER, which sometimes defined "other" and "miscellaneous" categories in order to satisfy exhaustiveness requi...

DEPRECATED: Incorrect Initialization

This weakness has been deprecated because its name and description did not match. The description duplicated CWE-454, while the name suggested a more abstract initiali...

DEPRECATED: Incorrect Semantic Object Comparison

This weakness has been deprecated. It was poorly described and difficult to distinguish from other entries. It was also inappropriate to assign a separate ID solely ...

DEPRECATED: Information Exposure Through Cleanup Log Files

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

DEPRECATED: Information Exposure Through Debug Log Files

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

DEPRECATED: Information Exposure Through Server Log Files

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

DEPRECATED: Miscalculated Null Termination

This entry has been deprecated because it was a duplicate of CWE-170. All content has been transferred to CWE-170.

DEPRECATED: Often Misused: Path Manipulation

This entry has been deprecated because of name confusion and an accidental combination of multiple weaknesses. Most of its content has been transferred to CWE-785.

DEPRECATED: Proxied Trusted Channel

This entry has been deprecated because it was a duplicate of CWE-441. All content has been transferred to CWE-441.

DEPRECATED: Race Condition in Switch

This entry has been deprecated. There are no documented cases in which a switch's control expression is evaluated more than once.

DEPRECATED: Reliance on DNS Lookups in a Security Decision

This entry has been deprecated because it was a duplicate of CWE-350. All content has been transferred to CWE-350.

DEPRECATED: Sensitive Information Accessible by Physical Probing of JTAG Interface

This entry has been deprecated because it was at a lower level of abstraction than supported by CWE. All relevant content has been integrated into CWE-319.

DEPRECATED: State Synchronization Error

This entry was deprecated because it overlapped the same concepts as race condition (CWE-362) and Improper Synchronization (CWE-662).

DEPRECATED: Trusting Self-reported DNS Name

This entry has been deprecated because it was a duplicate of CWE-350. All content has been transferred to CWE-350.

DEPRECATED: Uncontrolled File Descriptor Consumption

This entry has been deprecated because it was a duplicate of CWE-774. All content has been transferred to CWE-774.

DEPRECATED: Use of Dynamic Class Loading

This weakness has been deprecated because it partially overlaps CWE-470, it describes legitimate programmer behavior, and other portions will need to be integrated int...

DEPRECATED: Use of Uninitialized Resource

This entry has been deprecated because it was a duplicate of CWE-908. All content has been transferred to CWE-908.

Categories

Deprecated or Obsolete

DEPRECATED: .NET Environment Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: ASP.NET Environment Issues

This category has been deprecated. It added unnecessary depth and complexity to its associated views.

DEPRECATED: Byte/Object Code

This category has been deprecated. It was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the resu...

DEPRECATED: Channel Errors

This category has been deprecated because it redundant with the grouping provided by CWE-417.

DEPRECATED: Cleansing, Canonicalization, and Comparison Errors

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity and...

DEPRECATED: Code

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: Data Structure Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: General Special Element Problems

This entry has been deprecated. It is a leftover from PLOVER, but CWE-138 is a more appropriate mapping.

DEPRECATED: Inadvertently Introduced Weakness

This category has been deprecated as it was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the re...

DEPRECATED: Intentionally Introduced Nonmalicious Weakness

This category has been deprecated as it was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the re...

DEPRECATED: Intentionally Introduced Weakness

This category has been deprecated as it was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the re...

DEPRECATED: J2EE Environment Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: J2EE Time and State Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity and...

DEPRECATED: Location

This category has been deprecated. It was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the resu...

DEPRECATED: Mac Virtual File Problems

This category has been deprecated as it was found to be an unnecessary abstraction of platform specific details. Please refer to the category CWE-632 and weakness CWE-...

DEPRECATED: Mobile Code Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity and...

DEPRECATED: Motivation/Intent

This category has been deprecated. It was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the resu...

DEPRECATED: Often Misused: Arguments and Parameters

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: Other Intentional, Nonmalicious Weakness

This category has been deprecated as it was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the re...

DEPRECATED: Pathname Traversal and Equivalence Errors

This category has been deprecated. It was originally used for organizing weaknesses involving file names, which enabled access to files outside of a restricted directo...

DEPRECATED: Source Code

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: Struts Validation Problems

This category has been deprecated. It was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the resu...

DEPRECATED: Technology-specific Environment Issues

This category has been deprecated. It was originally intended as a "catch-all" for environment issues for technologies that did not have their own CWE, but it introduc...

DEPRECATED: Technology-Specific Input Validation Problems

This category has been deprecated. It was originally intended as a "catch-all" for input validation problems in technologies that did not have their own CWE, but intro...

DEPRECATED: Technology-Specific Special Elements

This category has been deprecated. It was originally intended as a "catch-all" for input validation problems in technologies that did not have their own CWE, but intro...

DEPRECATED: Technology-Specific Time and State Issues

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity and...

DEPRECATED: Temporary File Issues

This category has been deprecated. It was originally used for organizing the Development View (CWE-699), but it introduced unnecessary complexity and depth to the resu...

DEPRECATED: UNIX Path Link Problems

This category has been deprecated. It covered a very low level of abstraction based on operating system, which was not useful for any existing view.

DEPRECATED: User Interface Errors

This weakness has been deprecated because it was a duplicate of CWE-355. All content has been transferred to CWE-355.

DEPRECATED: Weaknesses that Affect Files or Directories

This category has been deprecated. It was not actively maintained, and it was not useful to stakeholders. It was originally created before CWE 1.0 as part of view CWE-...

DEPRECATED: Weaknesses that Affect Memory

This category has been deprecated. It was not actively maintained, and it was not useful to stakeholders. It was originally created before CWE 1.0 as part of view CWE-...

DEPRECATED: Weaknesses that Affect System Processes

This category has been deprecated. It was not actively maintained, and it was not useful to stakeholders. It was originally created before CWE 1.0 as part of view CWE-...

DEPRECATED: Web Problems

This entry has been deprecated. It was originally used for organizing the Development View (CWE-699) and some other views, but it introduced unnecessary complexity an...

DEPRECATED: Windows Path Link Problems

This category has been deprecated. It covered a very low level of abstraction based on operating system, which was not useful for any existing view.

DEPRECATED: Windows Virtual File Problems

This category has been deprecated as it was found to be an unnecessary abstraction of platform specific details. Please refer to the category CWE-632 and weakness CWE-...


Common Weakness Enumeration content on this website is copyright of The MITRE Corporation unless otherwise specified. Use of the Common Weakness Enumeration and the associated references on this website are subject to the Terms of Use as specified by The MITRE Corporation.