CWE-94 (Code Injection)

GPTKB entity

Statements (23)
Predicate Object
gptkbp:instanceOf gptkb:Common_Weakness_Enumeration
gptkbp:category Software Weakness
gptkbp:cause Privilege escalation
Arbitrary code execution
Denial of service
System compromise
gptkbp:describes Improper control of code generation
gptkbp:documentedIn gptkb:MITRE
gptkbp:firstPublished 2006
gptkbp:foundIn Embedded systems
Web applications
Desktop applications
gptkbp:hasIdol gptkb:CWE-94
https://www.w3.org/2000/01/rdf-schema#label CWE-94 (Code Injection)
gptkbp:mitigatedBy Input validation
Avoid dynamic code execution
Use of safe APIs
gptkbp:name Code Injection
gptkbp:relatedTo CWE-77 (Command Injection)
CWE-95 (Eval Injection)
gptkbp:url https://cwe.mitre.org/data/definitions/94.html
gptkbp:bfsParent gptkb:Common_Weakness_Enumeration_(CWE)
gptkbp:bfsLayer 7