Example #1
0
 /* goodB2G() - use badsource and goodsink */
 private static void GoodB2G(HttpRequest req, HttpResponse resp)
 {
     data = ""; /* initialize data in case there are no cookies */
     /* Read data from cookies */
     {
         HttpCookieCollection cookieSources = req.Cookies;
         if (cookieSources != null)
         {
             /* POTENTIAL FLAW: Read data from the first cookie value */
             data = cookieSources[0].Value;
         }
     }
     CWE117_Improper_Output_Neutralization_for_Logs__Get_Cookies_Web_68b.GoodB2GSink(req, resp);
 }
Example #2
0
 /* goodG2B() - use goodsource and badsink */
 private static void GoodG2B(HttpRequest req, HttpResponse resp)
 {
     /* FIX: Use a hardcoded string */
     data = "foo";
     CWE117_Improper_Output_Neutralization_for_Logs__Get_Cookies_Web_68b.GoodG2BSink(req, resp);
 }