Пример #1
0
 /* goodG2B() - use goodsource and badsink */
 private static void GoodG2B()
 {
     string data;
     /* FIX: Use a hardcoded string */
     data = "foo";
     Hashtable dataHashtable = new Hashtable(5);
     dataHashtable.Add(0, data);
     dataHashtable.Add(1, data);
     dataHashtable.Add(2, data);
     CWE15_External_Control_of_System_or_Configuration_Setting__Environment_72b.GoodG2BSink(dataHashtable  );
 }
Пример #2
0
 public override void Bad()
 {
     string data;
     /* get environment variable ADD */
     /* POTENTIAL FLAW: Read data from an environment variable */
     data = Environment.GetEnvironmentVariable("ADD");
     Hashtable dataHashtable = new Hashtable(5);
     dataHashtable.Add(0, data);
     dataHashtable.Add(1, data);
     dataHashtable.Add(2, data);
     CWE15_External_Control_of_System_or_Configuration_Setting__Environment_72b.BadSink(dataHashtable  );
 }