Category-948: SFP Secondary Cluster: Digital Certificate

ID: 948 Status: Incomplete

Summary

This category identifies Software Fault Patterns (SFPs) within the Digital Certificate cluster.

Membership

ID NAME
CWE-296 证书信任链回溯不恰当
CWE-297 对宿主不匹配的证书验证不恰当
CWE-298 证书过期验证不恰当
CWE-299 证书撤销验证不恰当
CWE-593 认证绕过:SSL对象创建后修改OpenSSL CTX对象
CWE-599 缺失对OpenSSL证书的验证