CWE-541Inclusion of Sensitive Information in an Include File

PUBLISHEDweakness record
released 2006-07-19 · last modified 2025-12-11

Metadata

CWE ID:
CWE-541
摘要:
Variant
结构:
Simple
状态:
Incomplete
发布日期:
2006-07-19
更新日期:
2025-12-11

名称

Inclusion of Sensitive Information in an Include File

描述

If an include file source is accessible, the file can contain usernames and passwords, as well as sensitive information pertaining to the application and system.

常见后果

范围:
Confidentiality
影响:
Read Application Data

相关 CWE

相关警报