rspec/rules/S4721/vbnet/rule.adoc

38 lines
686 B
Plaintext
Raw Normal View History

2020-06-30 12:49:37 +02:00
include::../description.adoc[]
include::../ask-yourself.adoc[]
include::../recommended.adoc[]
== Sensitive Code Example
----
Imports System.Security
Imports System.Diagnostics
Namespace N
Class A
Public Sub Foo(ByVal process As Process)
Process.Start("file.exe") ' Sensitive: file.exe will be searched in PATH directories
End Sub
End Class
End Namespace
----
== Compliant Solution
----
Imports System.Security
Imports System.Diagnostics
Namespace N
Class A
Public Sub Foo(ByVal process As Process)
Process.Start("/usr/bin/file.exe") ' Compliant
End Sub
End Class
End Namespace
----
include::../see.adoc[]