Esempio n. 1
0
        /* goodG2B() - use goodsource and badsink */
        private static void GoodG2B(HttpRequest req, HttpResponse resp)
        {
            string data;

            /* FIX: Use a hardcoded class name */
            data = "Testing.test";
            Container dataContainer = new Container();

            dataContainer.containerOne = data;
            CWE470_Unsafe_Reflection__Web_Params_Get_Web_67b.GoodG2BSink(dataContainer, req, resp);
        }
Esempio n. 2
0
        public override void Bad(HttpRequest req, HttpResponse resp)
        {
            string data;

            /* POTENTIAL FLAW: Read data from a querystring using Params.Get */
            data = req.Params.Get("name");
            Container dataContainer = new Container();

            dataContainer.containerOne = data;
            CWE470_Unsafe_Reflection__Web_Params_Get_Web_67b.BadSink(dataContainer, req, resp);
        }