Changes

Jump to: navigation, search

Security Severity Ratings

77 bytes added, 01:09, 26 November 2013
Group Keywords
! style="width:5%" | Examples
|-
| <b>cseccsectype- </b>
| Client Security (ie. Firefox, Thunderbird, etc)
|
{|class="wikitable collapsible fullwidth-table"
! cseccsectype-
|-
! style="width:5%" | Code
! style="width:10%"| Description
|-
|cseccsectype-bounds || client security issues due to incorrect boundary conditions (read or write)
|-
|cseccsectype-disclosure || Disclosure of sensitive user data, personal information, etc in a client product.
|-
|cseccsectype-dos || Used to tag client Denial of Service bugs. For web server denial of service bugs please use wsec-dos as these tend to be more severe. Search 28
|-
|cseccsectype-intoverflow || client security issues due to integer overflow
|-
|cseccsectype-oom || A client crash or hang that occurs in Out Of Memory conditions Search 2
|-
|cseccsectype-other || client security issues that don't fit into other categories
|-
|cseccsectype-priv-escalation || client privilege escalation security issues
|-
|cseccsectype-sop || violations of the client Same Origin Policy (Universal-XSS bugs, for example).
|-
|cseccsectype-uaf || client security issues due to a use-after-free Search 1
|-
|cseccsectype-ui-redress || client security issues due to UI Redress attacks, either site-on-site ("clickjacking" and friends) or manipulation of the browser UI to fool users into taking the wrong action.
|-
|cseccsectype-uninitialized || client security issues due to use of uninitialized memory
|-
|cseccsectype-wildptr || client security issues due to pointer misuse not otherwise covered (see cseccsectype-uaf, cseccsectype-uninitialized, cseccsectype-intoverflow, cseccsectype-bounds)
|-
|}
|wsec-disclosure || Disclosure of sensitive data, personal information, etc from a web service
|-
|wsec-dos || Used to denote web server Denial of Service bugs. For similar bugs in client software please use cseccsectype-dos instead.
|-
|wsec-errorhandling || Any error handling issue
|}
|}
 
=== Whiteboard Tags ===
{| style="width: 800px;" class="wikitable collapsible fullwidth-table"
Canmove, confirm
629
edits

Navigation menu