Matches in SemOpenAlex for { <https://semopenalex.org/work/W2892237651> ?p ?o ?g. }
- W2892237651 abstract "A common software product line strategy involves plugin-based web systems that support simple and quick incorporation of custom behaviors. As a result, they have been widely adopted to create web-based applications. Indeed, the popularity of ecosystems that support plugin-based development (e.g., WordPress) is largely due to the number of customization options available as community-contributed plugins. However, plugin-related vulnerabilities tend to be recurrent, exploitable and hard to be detected and may lead to severe consequences for the customized product. Hence, there is a need to further understand such vulnerabilities to enable preventing relevant security threats. Therefore, we conducted an exploratory study to characterize vulnerabilities caused by plugins in web-based systems. To this end, we went over WordPress vulnerability bulletins cataloged by the National Vulnerability Database as well as associated patches maintained by the WordPress plugins repository. We identified the main types of vulnerabilities caused by plugins as well as their impact and the size of the patch to fix the vulnerability. Moreover, we identified the most common security-related topics discussed among WordPress developers. We observed that, while plugin-related vulnerabilities may have severe consequences and might remain unnoticed for years before being fixed, they can commonly be mitigated with small and localized changes to the source code. The characterization helps to provide an understanding on how typical plugin-based vulnerabilities manifest themselves in practice. Such information can be helpful to steer future research on plugin-based vulnerability detection and prevention." @default.
- W2892237651 created "2018-09-27" @default.
- W2892237651 creator A5021306015 @default.
- W2892237651 creator A5026047020 @default.
- W2892237651 creator A5028296394 @default.
- W2892237651 creator A5030809276 @default.
- W2892237651 creator A5037756038 @default.
- W2892237651 creator A5057530896 @default.
- W2892237651 creator A5089608165 @default.
- W2892237651 date "2018-09-10" @default.
- W2892237651 modified "2023-10-16" @default.
- W2892237651 title "Understanding vulnerabilities in plugin-based web systems" @default.
- W2892237651 cites W1969354810 @default.
- W2892237651 cites W1970607969 @default.
- W2892237651 cites W1971733255 @default.
- W2892237651 cites W1979820341 @default.
- W2892237651 cites W1985418344 @default.
- W2892237651 cites W1986222079 @default.
- W2892237651 cites W1986436601 @default.
- W2892237651 cites W1993318811 @default.
- W2892237651 cites W1999296854 @default.
- W2892237651 cites W1999827279 @default.
- W2892237651 cites W2001082470 @default.
- W2892237651 cites W2009391857 @default.
- W2892237651 cites W2015761648 @default.
- W2892237651 cites W2024920205 @default.
- W2892237651 cites W2034911954 @default.
- W2892237651 cites W2043837581 @default.
- W2892237651 cites W2052468877 @default.
- W2892237651 cites W2056894403 @default.
- W2892237651 cites W2057366964 @default.
- W2892237651 cites W2077937403 @default.
- W2892237651 cites W2088498570 @default.
- W2892237651 cites W2096274199 @default.
- W2892237651 cites W2100945416 @default.
- W2892237651 cites W2101502756 @default.
- W2892237651 cites W2110986222 @default.
- W2892237651 cites W2113693268 @default.
- W2892237651 cites W2120197657 @default.
- W2892237651 cites W2124100711 @default.
- W2892237651 cites W2126166995 @default.
- W2892237651 cites W2134682016 @default.
- W2892237651 cites W2135093973 @default.
- W2892237651 cites W2149257325 @default.
- W2892237651 cites W2152382597 @default.
- W2892237651 cites W2167926541 @default.
- W2892237651 cites W2209872464 @default.
- W2892237651 cites W2407999381 @default.
- W2892237651 cites W2480954553 @default.
- W2892237651 cites W2793144087 @default.
- W2892237651 doi "https://doi.org/10.1145/3233027.3233042" @default.
- W2892237651 hasPublicationYear "2018" @default.
- W2892237651 type Work @default.
- W2892237651 sameAs 2892237651 @default.
- W2892237651 citedByCount "5" @default.
- W2892237651 countsByYear W28922376512019 @default.
- W2892237651 countsByYear W28922376512021 @default.
- W2892237651 countsByYear W28922376512022 @default.
- W2892237651 crossrefType "proceedings-article" @default.
- W2892237651 hasAuthorship W2892237651A5021306015 @default.
- W2892237651 hasAuthorship W2892237651A5026047020 @default.
- W2892237651 hasAuthorship W2892237651A5028296394 @default.
- W2892237651 hasAuthorship W2892237651A5030809276 @default.
- W2892237651 hasAuthorship W2892237651A5037756038 @default.
- W2892237651 hasAuthorship W2892237651A5057530896 @default.
- W2892237651 hasAuthorship W2892237651A5089608165 @default.
- W2892237651 hasConcept C136764020 @default.
- W2892237651 hasConcept C199360897 @default.
- W2892237651 hasConcept C22680326 @default.
- W2892237651 hasConcept C29983905 @default.
- W2892237651 hasConcept C38652104 @default.
- W2892237651 hasConcept C41008148 @default.
- W2892237651 hasConcept C4924752 @default.
- W2892237651 hasConcept C527648132 @default.
- W2892237651 hasConcept C62913178 @default.
- W2892237651 hasConceptScore W2892237651C136764020 @default.
- W2892237651 hasConceptScore W2892237651C199360897 @default.
- W2892237651 hasConceptScore W2892237651C22680326 @default.
- W2892237651 hasConceptScore W2892237651C29983905 @default.
- W2892237651 hasConceptScore W2892237651C38652104 @default.
- W2892237651 hasConceptScore W2892237651C41008148 @default.
- W2892237651 hasConceptScore W2892237651C4924752 @default.
- W2892237651 hasConceptScore W2892237651C527648132 @default.
- W2892237651 hasConceptScore W2892237651C62913178 @default.
- W2892237651 hasLocation W28922376511 @default.
- W2892237651 hasOpenAccess W2892237651 @default.
- W2892237651 hasPrimaryLocation W28922376511 @default.
- W2892237651 hasRelatedWork W2210545205 @default.
- W2892237651 hasRelatedWork W2311163146 @default.
- W2892237651 hasRelatedWork W2327129623 @default.
- W2892237651 hasRelatedWork W2386866874 @default.
- W2892237651 hasRelatedWork W2467930323 @default.
- W2892237651 hasRelatedWork W2748952813 @default.
- W2892237651 hasRelatedWork W2944854350 @default.
- W2892237651 hasRelatedWork W2945115236 @default.
- W2892237651 hasRelatedWork W2945948697 @default.
- W2892237651 hasRelatedWork W3007967230 @default.
- W2892237651 isParatext "false" @default.
- W2892237651 isRetracted "false" @default.
- W2892237651 magId "2892237651" @default.