CWE-796: Only Filtering Special Elements Relative to a Marker

Variant Incomplete Simple

CWE版本: 4.18

更新日期: 2025-09-09

弱点描述

The product receives data from an upstream component, but only accounts for special elements positioned relative to a marker (e.g. "at the beginning/end of a string; the second argument"), thereby missing remaining special elements that may exist before sending it to a downstream component.

常见后果

影响范围: Integrity

技术影响: Unexpected State

引入模式

阶段 说明
Implementation REALIZATION: This weakness is caused during implementation of an architectural security tactic.
关键信息

CWE ID: CWE-796

抽象级别: Variant

结构: Simple

状态: Incomplete

相关弱点