CWE-796: Only Filtering Special Elements Relative to a Marker
Variant
Incomplete
Simple
CWE版本: 4.18
更新日期: 2025-09-09
弱点描述
The product receives data from an upstream component, but only accounts for special elements positioned relative to a marker (e.g. "at the beginning/end of a string; the second argument"), thereby missing remaining special elements that may exist before sending it to a downstream component.
常见后果
影响范围: Integrity
技术影响: Unexpected State
引入模式
| 阶段 | 说明 |
|---|---|
| Implementation | REALIZATION: This weakness is caused during implementation of an architectural security tactic. |