Search:     Advanced search
server monitoring

ASP.NET Misconfiguration: Password in Configuration File

Article ID: 199
Last updated: 09 May, 2008
Views: 369
Posted: 09 May, 2008
by: Tech Pubs S.
Updated: 09 May, 2008
by: Tech Pubs S.

Description

The clear-text passwords are in the configuration files. Clear-text passwords in the configuration files are subject to exposure in a variety of ways, including people getting access to the file, the file being served directly to a user due to a server error, a file download flaw, access to a backup copy, or some other exposure.

This article was:   Helpful | Not Helpful
Prev   Next
Logging and Auditing Vulnerability     Allowing password aging