jbruinaud / WebGoatNet

WebGoat .Net for demos
0 stars 0 forks source link

CX Unencrypted_Web_Config_File @ WebGoatCoins/Web.config [master] #136

Open jbruinaud opened 4 years ago

jbruinaud commented 4 years ago

Unencrypted_Web_Config_File issue exists @ WebGoatCoins/Web.config in branch master

The web.config file WebGoatCoins\Web.config does not encrypt the sensitive element found at line 1. This information can be plainly read by anyone with local file-system access.

Severity: Low

CWE:312

Checkmarx

Lines: 1


Code (Line #1):

<?xml version="1.0"?>

jbruinaud commented 4 years ago

Issue still exists.

SUMMARY

Issue has total 1 vulnerabilities left to be fix (Please scroll to the top for more information)