SANS CWE Coverage
Overview
SysAdmin, Audit, Network, Security (SANS) demonstrates the currently most common and impactful software weaknesses. Often easy to find and exploit, these can lead to exploitable vulnerabilities that allow adversaries to completely take over a system, steal data, or prevent applications from working.
This article organizes Common Weakness Enumerations (CWEs) relevant to SANS.
Each row in the table below outlines a specific compliance standard, categorized by the following columns:
Compliance Standard: The specific category of the standard to which the CWE is mapped.
Languages: Supported programming languages.
CWE-ID: The relevant CWE for this standard, along with a short description.
SANS TOP 25 CWE Coverage
# | Languages | CWE-ID |
---|---|---|
1. |
|
|
2. |
|
|
3. |
|
|
4. |
|
|
5. |
|
|
6. |
|
|
7. |
|
|
8. |
|
|
9. |
|
|
10. |
|
|
11. |
|
|
12. |
|
|
13. |
|
|
14. |
|
|
15. |
|
|
16. |
|
|
17. |
|
|
18. |
|
|
19. |
|
|