Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

This compliant solution sanitizes the user name input before logging it. Refer to guideline IDS01-J. Sanitize before processing or storing user input for more details on input sanitization.

...

Allowing unvalidated user input to be logged can result in forging of log entries.

Rule Guideline

Severity

Likelihood

Remediation Cost

Priority

Level

EXC12-J

medium

probable

medium

P8

L2

...