CWE-795

Only Filtering Special Elements at a Specified Location
AI Translation Available

The product receives data from an upstream component, but only accounts for special elements at a specified location, thereby missing remaining special elements that may exist before sending it to a downstream component.

Status
incomplete
Abstraction
base

A filter might only account for instances of special elements when they occur:

- relative to a marker (e.g. 'at the beginning/end of string; the second argument'), or

- at an absolute position (e.g. 'byte number 10').

This may leave special elements in the data that did not match the filter position, but still may be dangerous.

Common Consequences

integrity
Impacts
unexpected state

Potential Mitigations