...
Rule | Severity | Likelihood | Remediation Cost | Priority | Level |
---|---|---|---|---|---|
MSC03-J | High | Probable | Medium | P12 | L1 |
Automated Detection
Tool | Version | Checker | Description |
---|---|---|---|
Coverity | 7.5 | HARDCODED_CREDENTIALS CONFIG FB.DMI_CONSTANT_DB_ PASSWORD FB.DMI_EMPTY_DB_PASSWORD | Implemented |
Fortify | 1.0 | Password_Management Password_Management__Hardcoded_Password | Partially Implemented |
PMD | 1.0 | AvoidUsingHardCodedIP | Partially Implemented |
...
Related Guidelines
MSC18-C. Be careful while handling sensitive data, such as passwords, in program code | |
Hard-coded Password [XYP] | |
CWE-259. Use of hard-coded password | |
| CWE-798. Use of hard-coded credentials |
...
11.2, Outbound Passwords: Keep Passwords out of Source Code | |
Unsafe Mobile Code: Database Access | |
9.4, Private Object State and Object Immutability |
...