Skip to content

H3-2024-0060

Insecure Storage of Connection Strings in Application Properties

Category CREDENTIALS
Base Score 7.1

Description

The application stores sensitive connection strings, including credentials, in application properties or configuration files without adequate protection.

Impact

This can lead to unauthorized access if these properties are exposed or accessed by unauthorized individuals.

References