Credit card numbers disclosed
Description: Credit card numbers disclosed
Applications sometimes disclose sensitive financial information such as credit card numbers. Responses containing credit card numbers may not represent any security vulnerability - for example, a number may belong to the logged-in user to whom it is displayed. If a credit card number is identified during a security assessment it should be verified, then application logic reviewed to identify whether its disclosure within the application is necessary and appropriate.
Vulnerability classifications
Typical severity
Information
Type index
0x00600500