|
Category ID: 1152
Vulnerability Mapping:
PROHIBITED
This CWE ID must not be used to map to real-world vulnerabilities
|
| Nature | Type | ID | Name |
|---|---|---|---|
| MemberOf | 1133 | Weaknesses Addressed by the SEI CERT Oracle Coding Standard for Java | |
| HasMember | 259 | Use of Hard-coded Password | |
| HasMember | 311 | Missing Encryption of Sensitive Data | |
| HasMember | 327 | Use of a Broken or Risky Cryptographic Algorithm | |
| HasMember | 330 | Use of Insufficiently Random Values | |
| HasMember | 332 | Insufficient Entropy in PRNG | |
| HasMember | 336 | Same Seed in Pseudo-Random Number Generator (PRNG) | |
| HasMember | 337 | Predictable Seed in Pseudo-Random Number Generator (PRNG) | |
| HasMember | 400 | Uncontrolled Resource Consumption | |
| HasMember | 401 | Missing Release of Memory after Effective Lifetime | |
| HasMember | 770 | Allocation of Resources Without Limits or Throttling | |
| HasMember | 798 | Use of Hard-coded Credentials |
|
Usage: PROHIBITED
(this CWE ID must not be used to map to real-world vulnerabilities)
|
|
Reason: Category |
|
Rationale: This entry is a Category. Using categories for mapping has been discouraged since 2019. Categories are informal organizational groupings of weaknesses that can help CWE users with data aggregation, navigation, and browsing. However, they are not weaknesses in themselves. |
|
Comments: See member weaknesses of this category. |
|
[REF-830] The Software Engineering Institute. "SEI CERT Oracle Coding Standard for Java : Rule 49. Miscellaneous (MSC)".
<https://wiki.sei.cmu.edu/confluence/pages/viewpage.action?pageId=88487686>.
|
|
[REF-1006] The Software Engineering Institute. "SEI CERT Oracle Coding Standard for Java : Rec 49. Miscellaneous (MSC)".
<https://wiki.sei.cmu.edu/confluence/pages/viewpage.action?pageId=88487351>.
|
|
Use of the Common Weakness Enumeration (CWE™) and the associated references from this website are subject to the Terms of Use. CWE is sponsored by the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) and managed by the Homeland Security Systems Engineering and Development Institute (HSSEDI) which is operated by The MITRE Corporation (MITRE). Copyright © 2006–2026, The MITRE Corporation. CWE, CWSS, CWRAF, and the CWE logo are trademarks of The MITRE Corporation. |
||

