Ejemplo n.º 1
0
 public override void Bad()
 {
     /* get environment variable ADD */
     /* POTENTIAL FLAW: Read data from an environment variable */
     data = Environment.GetEnvironmentVariable("ADD");
     CWE427_Uncontrolled_Search_Path_Element__Environment_68b.BadSink();
 }
Ejemplo n.º 2
0
 /* goodG2B() - use goodsource and badsink */
 private static void GoodG2B()
 {
     /* FIX: Set the path as the "system" path */
     if (RuntimeInformation.IsOSPlatform(OSPlatform.Linux))
     {
         data = "/bin";
     }
     else
     {
         data = "%SystemRoot%\\system32";
     }
     CWE427_Uncontrolled_Search_Path_Element__Environment_68b.GoodG2BSink();
 }