结构: Simple
Abstraction: Variant
状态: Draft
被利用可能性: unkown
The software does not mask passwords during entry, increasing the potential for attackers to observe and capture passwords.
范围 | 影响 | 注释 |
---|---|---|
Access Control | Bypass Protection Mechanism |
策略:
Recommendations include requiring all password fields in your web application be masked to prevent other users from seeing this information.