|
ASP Shopping Cart contains a flaw that may lead to an unauthorized password exposure. The encrypted passwords are stored in the same database as the encryption key, and so an attacker who gains access to the database will be able to decrypt the stored passwords, which may lead to a loss of confidentiality.
|