Web protector has been reported prone to a trivial encryption weakness. It has been reported that the method used to obfuscate and protect the HTML source of web pages implementing Web Protector is flawed and may be easily reversed. This weakness may be exploited to disclose sensitive information contained in HMTL source or to reveal the HTML source itself. Due to the nature of web based obfuscation Sensitive information should never be included in the source of an obfuscated document. Administrators may be relying on a false sense of security by implementing the protection supplied by Web protector. It should be noted that although this weakness has been reported to affect Web Protector version 2.0, previous versions are most likely also affected.
Web protector has been reported prone to a trivial encryption weakness. It has been reported that the method used to obfuscate and protect the HTML source of web pages implementing Web Protector is flawed and may be easily reversed. This weakness may be exploited to disclose sensitive information contained in HMTL source or to reveal the HTML source itself. Due to the nature of web based obfuscation Sensitive information should never be included in the source of an obfuscated document. Administrators may be relying on a false sense of security by implementing the protection supplied by Web protector. It should be noted that although this weakness has been reported to affect Web Protector version 2.0, previous versions are most likely also affected.