PenTestIT Post Of The Day: CWE/SANS Top 25 Most Dangerous Software Errors

by Black on June 30, 2011

in Miscellaneous, PPOTD

The 2011 CWE/SANS Top 25 Most Dangerous Software Errors is a list of the most widespread and
critical errors that can lead to serious vulnerabilities in software. They are often easy to find, and
easy to exploit. They are dangerous because they will frequently allow attackers to completely take
over the software, steal data, or prevent the software from working at all.

Table of Contents

  • Guidance for Using the Top 25
  • Brief Listing of the Top 25
  • Category-Based View of the Top 25
  • Organization of the Top 25
  • Detailed CWE Descriptions
  • Monster Mitigations
  • Appendix A: Selection Criteria and Supporting Fields
  • Appendix B: What Changed in the 2011 Top 25
  • Appendix C: Construction, Selection, and Scoring of the Top 25
  • Appendix D: Comparison to OWASP Top Ten 2010
  • Appendix E: Other Resources for the Top 25

This document will surely help to know better the error that we know but never implemented it.

Click here to read full document.

If you enjoyed this article, you might also like:

{ 0 comments… add one now }

Leave a Comment

* Copy this password:

* Type or paste password here:

Previous post:

Next post: