Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: added few sections below...

...

Tool

Version

Checker

Description

TBD 


 

Related

...

Hyperlink black-font text "the CERT website" below, with URL as follows: https://www.kb.cert.org/vulnotes/bymetric?searchview&query=FIELD+KEYWORDS+contains+<RULE_ID>

In the URL example above, <RULE_ID> should be substituted by this CERT guideline ID (e.g., INT31-C). Then, remove this purple-font paragraph.

Search for vulnerabilities resulting from the violation of this rule on the CERT website.

Related Guidelines

Fill in the table below with at least one entry row, per these instructions, then remove this purple-font section.

CWE-297

 Improper Validation of Certificate with Host Mismatch

Bibliography

[Chen 14]

OAuth Demystified for Mobile Application Developers.

...

  OAuthDemystified.pdf

[IETF OAuth1.0a]

Internet Engineering Task Force (IETF). OAuth core 1.0 revision a. http://oauth.net/core/1.0a/.

[IETF OAuth2.0] Internet Engineering Task Force (IETF). The OAuth 2.0 authorization framework. http://tools.ietf.org/html/rfc6749.
[Android Intent]Intends and Intent Filters in Andriod Developer Documentation. Intents.filters.document
 TBD (e.g., MITRE CWE) 

Bibliography

[TBD]