CWE-509 具传播性的恶意代码(病毒或蠕虫)

Replicating Malicious Code (Virus or Worm)

结构: Simple

Abstraction: Base

状态: Incomplete

被利用可能性: unkown

基本描述

Replicating malicious code, including viruses and worms, will attempt to attack other systems once it has successfully compromised the target system or software.

相关缺陷

  • cwe_Nature: ChildOf cwe_CWE_ID: 507 cwe_View_ID: 1000 cwe_Ordinal: Primary

  • cwe_Nature: ChildOf cwe_CWE_ID: 507 cwe_View_ID: 699 cwe_Ordinal: Primary

常见的影响

范围 影响 注释
['Confidentiality', 'Integrity', 'Availability'] Execute Unauthorized Code or Commands

可能的缓解方案

Operation

策略:

Antivirus software scans for viruses or worms.

Installation

策略:

Always verify the integrity of the software that is being installed.

分类映射

映射的分类名 ImNode ID Fit Mapped Node Name
Landwehr Replicating (virus)