CWE-96: Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')

BaseDraft

The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes code syntax before inserting the input into an executable resource, such as a library, configuration file, or template.

View on MITRE
Back to CWE Lookup

Technical Details

Structure
Simple

Applicable To

Languages
PHPPerlInterpreted
Platforms

Learn More