jbruinaud / WebGoatNet

WebGoat .Net for demos
0 stars 0 forks source link

CX Heap_Inspection @ RebuildDatabase.aspx [master] #133

Open jbruinaud opened 4 years ago

jbruinaud commented 4 years ago

Heap_Inspection issue exists @ RebuildDatabase.aspx in branch master

Method Width="371px" at line 84 of RebuildDatabase.aspx defines txtPassword, which is designated to contain user passwords. However, while plaintext passwords are later assigned to txtPassword, this variable is never cleared from memory. 

Severity: Medium

CWE:244

Checkmarx

Lines: 84


Code (Line #84):

                        <asp:TextBox ID="txtPassword" runat="server" Height="16px" Width="371px" 

jbruinaud commented 4 years ago

Issue still exists.

SUMMARY

Issue has total 1 vulnerabilities left to be fix (Please scroll to the top for more information)