Szczegóły CWE-1073

CWE-1073

Non-SQL Invokable Control Element with Excessive Number of Data Resource Accesses
Incomplete
2019-01-03
00h00 +00:00
2025-12-11
00h00 +00:00
Powiadomienia dla konkretnego CWE
Bądź na bieżąco z wszelkimi zmianami dotyczącymi konkretnego CWE.
Zarządzaj powiadomieniami

Nazwa: Non-SQL Invokable Control Element with Excessive Number of Data Resource Accesses

The product contains a client with a function or method that contains a large number of data accesses/queries that are sent through a data manager, i.e., does not use efficient database capabilities.

Informacje ogólne

Sposoby wprowadzenia

Architecture and Design

Odpowiednie platformy

Język

Name: SQL (Often)

Technologie

Name: Database Server (Often)

Typowe konsekwencje

Zakres Wpływ Prawdopodobieństwo
OtherReduce Performance

Note: This issue can make the product perform more slowly. If the relevant code is reachable by an attacker, then this performance problem might introduce a vulnerability.

Uwagi dotyczące mapowania podatności

Uzasadnienie : This entry is primarily a quality issue with no direct security implications.
Komentarz : Look for weaknesses that are focused specifically on insecure behaviors that have more direct security implications.

Odniesienia

REF-959

Automated Source Code Performance Efficiency Measure (ASCPEM)
Object Management Group (OMG).
https://www.omg.org/spec/ASCPEM/

Zgłoszenie

Nazwa Organizacja Data Data wydania Version
CWE Content Team MITRE 2018-07-02 +00:00 2019-01-03 +00:00 3.2

Modyfikacje

Nazwa Organizacja Data Komentarz
CWE Content Team MITRE 2020-02-24 +00:00 updated Description, Relationships
CWE Content Team MITRE 2020-08-20 +00:00 updated Relationships
CWE Content Team MITRE 2023-01-31 +00:00 updated Description
CWE Content Team MITRE 2023-04-27 +00:00 updated References, Relationships
CWE Content Team MITRE 2023-06-29 +00:00 updated Mapping_Notes
CWE Content Team MITRE 2024-02-29 +00:00 updated Mapping_Notes
CWE Content Team MITRE 2025-04-03 +00:00 updated Applicable_Platforms
CWE Content Team MITRE 2025-12-11 +00:00 updated Common_Consequences, Description, Time_of_Introduction