Ejemplo n.º 1
0
 /* goodG2B() - use goodsource and badsink */
 private static void GoodG2B(HttpRequest req, HttpResponse resp)
 {
     string data;
     /* FIX: Use a hardcoded string */
     data = "foo";
     Container dataContainer = new Container();
     dataContainer.containerOne = data;
     CWE80_XSS__Web_Get_Cookies_Web_67b.GoodG2BSink(dataContainer , req, resp );
 }
Ejemplo n.º 2
0
 public override void Bad(HttpRequest req, HttpResponse resp)
 {
     string data;
     data = ""; /* initialize data in case there are no cookies */
     /* Read data from cookies */
     {
         HttpCookieCollection cookieSources = req.Cookies;
         if (cookieSources != null)
         {
             /* POTENTIAL FLAW: Read data from the first cookie value */
             data = cookieSources[0].Value;
         }
     }
     Container dataContainer = new Container();
     dataContainer.containerOne = data;
     CWE80_XSS__Web_Get_Cookies_Web_67b.BadSink(dataContainer , req, resp );
 }