软件缺陷的分类都有哪些

2023-07-05   


From wikipedia
   Memory safety violations, such as:
   Buffer overflows
   Dangling pointers
   Input validation errors, such as:
   Format string bugs
   Improperly handling shell metacharacters so they are interpreted
   SQL injection
   Code injection
   E-mail injection
   Directory traversal
   Cross-site scripting in web applications
   HTTP header injection
   HTTP response splitting
   Race conditions, such as:
   Time-of-check-to-time-of-use bugs
   Symlink races
   Privilege-confusion bugs, such as:
   Cross-site request forgery in web applications
   Clickjacking
   FTP bounce attack
   Privilege escalation
   User interface failures, such as:
   Warning fatigue [2] or user conditioning [3]
   Blaming the Victim Prompting a user to make a security decision without giving the user enough information to answer it [4]
   Race Conditions [5]


相关内容:

  1. 中科创达面试题
  2. 事业单位都有哪些分类?
  3. 敏捷开发的主要原则都有哪些
  4. 中科方德软件测试面试题
  5. 中科方德软件测试面试题
  6. 造价师面试问题