If an include file source is accessible, the file can contain usernames and passwords, as well as sensitive information pertaining to the application and system.
Do not store sensitive information in include files.
Protect include files from being exposed.
Our security experts can help you identify and remediate CWE-541 vulnerabilities in your codebase.
Get Security Assessment