Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: adde related guidlines CWE-297

...

Fill in the table below with at least one entry row, per these instructions, then remove this purple-font section.

CWE-297

 Improper Validation of Certificate with Host Mismatch

 TBD (e.g., MITRE CWE) 

Bibliography

[Chen 14]

OAuth Demystified for Mobile Application Developers.  OAuthDemystified.pdf

  [IETF OAuth1.0a]

Internet Engineering Task Force (IETF). OAuth core 1.0 revision a. http://oauth.net/core/1.0a/.

  [IETF OAuth2.0] Internet Engineering Task Force (IETF). The OAuth 2.0 authorization framework. http://tools.ietf.org/html/rfc6749.

...