CWE-537: Java Runtime Error Message Containing Sensitive Information

ID CWE-537
Abstraction Variant
Structure Simple
Status Incomplete
In many cases, an attacker can leverage the conditions that cause unhandled exception errors in order to gain unauthorized access to the system.

Modes of Introduction

Phase Note
Implementation

Applicable Platforms

Type Class Name Prevalence
Language Java

Relationships

View Weakness
# ID View Status # ID Name Abstraction Structure Status
CWE-1000 Research Concepts Draft CWE-211 Externally-Generated Error Message Containing Sensitive Information Base Simple Incomplete
Loading...
Loading...