|
|
|
|
CWE-312 Individual Dictionary Definition (Draft 9)
Weakness ID
| Status: Draft 312 (Weakness Base) | | Description | Summary The application stores sensitive information in plaintext within a resource that might
be accessible to another control sphere, when the information should be encrypted or otherwise
protected. | | Relationships | | | Source Taxonomies | PLOVER - Plaintext Storage of Sensitive Information | | Related Attack Patterns | | CAPEC-ID | Attack Pattern Name |
|---|
| 37 | Lifting Data Embedded in Client Distributions |
|
|