CWE-SANS-Top-25/Insecure-interaction-between-components/CWE-79

From aldeid
Jump to navigation Jump to search

CWE-79: Failure to Preserve Web Page Structure ('Cross-site Scripting')

Description

Cross-site scripting (XSS) is one of the most prevalent, obstinate, and dangerous vulnerabilities in web applications. Read more

Risk measurement

Weakness Prevalence High
Remediation Cost Low
Attack Frequency Often
Consequences Code execution, Security bypass
Ease of Detection Easy
Attacker Awareness High

Comments

Talk:CWE-SANS-Top-25/Insecure-interaction-between-components/CWE-79