CWE-13Variant

ASP.NET Misconfiguration: Password in Configuration File

Draft in the CWE catalog · 0 CVEs mapped

0
CVEs mapped
What it is

Storing a plaintext password in a configuration file allows anyone who can read the file access to the password-protected resource making them an easy target for attackers.

The record
Technical detail
CWE ID
CWE-13
Abstraction
Variant
Structure
Simple
Status
Draft
References (4)