Skip to content

CX Hardcoded_password_in_Connection_String @ root/register.jsp [master] #48

@CxYair

Description

@CxYair

Hardcoded_password_in_Connection_String issue exists @ root/register.jsp in branch master

The application contains hardcoded connection details, """", at line 10 of root\register.jsp. This connection string contains a hardcoded password, which is used in = at line 10 of root\register.jsp to connect to a database server with getConnection. This can expose the database password, and impede proper password management.

Severity: Medium

CWE:547

Checkmarx

Training
Recommended Fix

Lines: 10


Code (Line #10):

String userid = (String) session.getAttribute("userid");

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions