Example #1
0
        public override void Bad()
        {
            string data = CWE117_Improper_Output_Neutralization_for_Logs__Listen_tcp_61b.BadSource();

            try
            {
                int value = int.Parse(data);
            }
            catch (FormatException exceptNumberFormat)
            {
                /* POTENTIAL FLAW: Logging output is not neutralized */
                IO.Logger.Log(NLog.LogLevel.Warn, exceptNumberFormat, "Failed to parse value = " + data);
            }
        }