Property
Languagejava
Severitymedium
CWECWE-319: Cleartext Transmission of Sensitive Information
OWASPA03:2017 - Sensitive Data Exposure
Confidence LevelMedium
Impact LevelMedium
Likelihood LevelMedium

Description#

The code establishes a connection using the Telnet protocol, which does not encrypt data sent over the network. This means any information, including passwords or sensitive commands, is transmitted in cleartext and can be intercepted.

Impact#

Attackers could easily capture and read sensitive data transmitted over Telnet, leading to credential theft or exposure of confidential information. This can result in unauthorized access to systems, data breaches, and potential regulatory violations for the organization.