CWE were grouped into three levels called bleachers. The top tier known weaknesses divided into a small number of large, general courses for discussions between the company management, academics, researchers and suppliers. The middle tier is made up of several dozen groups classified definitions to be used by security experts, system administrators and software developers. The lower tier is the complete list, for the population at all levels, including personal computers (PC) users. CWE entries are numbered for reference.
CWE is compiled and updated by diversity, international panel of experts from business, academic institutions and government agencies, providing breadth and depth of content. CWE provides a standardized terminology, allows service providers to inform potential users of certain weaknesses and proposed resolutions, the software allows buyers to compare products offered by different vendors and the legal staff can formalise contracts , the terms and conditions governing the use of software.
