CWE-161: Improper Neutralization of Multiple Leading Special Elements

ID CWE-161
Abstraction Variant
Structure Simple
Status Incomplete
The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes multiple leading special elements that could be interpreted in unexpected ways when they are sent to a downstream component.

As data is parsed, improperly handled multiple leading special elements may cause the process to take unexpected actions that result in an attack.

Modes of Introduction

Phase Note
Implementation

Applicable Platforms

Type Class Name Prevalence
Language Not Language-Specific

Relationships

View Weakness
# ID View Status # ID Name Abstraction Structure Status
CWE-1000 Research Concepts Draft CWE-160 Improper Neutralization of Leading Special Elements Variant Simple Incomplete
Loading...
Loading...