CWE-795
Only Filtering Special Elements at a Specified Location
AI Translation Available
The product receives data from an upstream component, but only accounts for special elements at a specified location, thereby missing remaining special elements that may exist before sending it to a downstream component.
Status
incomplete
Abstraction
base
Affected Platforms
Extended Description
AI Translation
A filter might only account for instances of special elements when they occur:
- relative to a marker (e.g. 'at the beginning/end of string; the second argument'), or
- at an absolute position (e.g. 'byte number 10').
This may leave special elements in the data that did not match the filter position, but still may be dangerous.
Technical Details
AI Translation
Common Consequences
integrity
Impacts
unexpected state