Skip to main content

Management / Auditlog / Threats / DEV

Insufficient encoding of audit logs

CCC.AUDITLOG.TH04

User-supplied data such as scripts, control characters, escape sequences, or code fragments may be written to audit logs without proper encoding or sanitization. This can result in malformed or unexpected log entries that could disrupt or compromise systems that process or display these logs, including log viewers or downstream services.

Related Capabilities

IDTitleDescription
CCC.AuditLog.CP03SinkAbility to continually stream audit log data to a hosted storage bucket or data lake solution.
CCC.AuditLog.CP08External SinkAudit log events can be configured to be sent to a external SIEM or data analysis provider outside of the cloud platform.
CCC.Core.CP03Access Log PublicationThe service automatically publishes structured, verbose records of activities performed within the scope of the service by external actors.
CCC.Core.CP10Log PublicationThe service automatically publishes structured, verbose records of activities, operations, or events that occur within the service.

External Mappings

FrameworkIDRemarks
OWASPTOP10A03:2021
OWASPTOP10A09:2021
CWECWE-79
CWECWE-117
CWECWE-116