CWE-349

Acceptance of Extraneous Untrusted Data With Trusted Data
AI Translation Available

The product, when processing trusted data, accepts any untrusted data that is also included with the trusted data, treating the untrusted data as if it were trusted.

Status
draft
Abstraction
base

Common Consequences

access control integrity
Impacts
bypass protection mechanism modify application data

Potential Mitigations