OWASP 10 Flashcards
1
Q
M1
A
Weak server side controls, out of scope for module
2
Q
M2
A
Insecure data storage, when app stores sensitive data in plaintext or a trivially reversible format, SEVERE
3
Q
M3
A
Insufficient Transport Layer Protection
4
Q
M4
A
Unintented Data Leakage
5
Q
M5
A
Poor Authorization and Authentication
6
Q
M6b
A
Broken Cryptography
7
Q
M7
A
Client side injection
8
Q
M8
A
Security Decisions via untrusted inputs
9
Q
M9
A
Improper session handling
10
Q
M10
A
Lack of binary protections