How to remediate – Report Only Content Security Policy Detected 1. Introduction Report Only Content Security Policy Detected indicates a Content Security Policy (CSP) is in place on your website,...
How to remediate – Request Tracker 3.8.x < 3.8.17 / 4.x < 4.0.13 Multiple Vulnera... 1. Introduction The Request Tracker 3.8.x prior to 3.8.17 and 4.x prior to 4.0.13 application is affected by multiple vulnerabilities....
How to remediate – Request Tracker 3.x < 3.8.15 / 4.x < 4.0.8 Multiple Vulnerabil... 1. Introduction The Request Tracker 3.x and 4.x application, prior to versions 3.8.15 and 4.0.8 respectively, is affected by multiple...
How to remediate – Request Tracker 3.x < 3.8.9 Security Bypass and Information Di... 1. Introduction The Request Tracker 3.x application, specifically versions prior to 3.8.9, is affected by security bypass and information disclosure...
How to remediate – Request Tracker 4.0.x < 4.0.23 / 4.2.x < 4.2.10 Multiple Vulne... 1. Introduction The Request Tracker 4.0.x prior to 4.0.23 and 4.2.x prior to 4.2.10 application has multiple vulnerabilities that could...
How to remediate – Request Tracker 4.2.x < 4.2.5 Email::Address:List Module Strin... 1. Introduction Request Tracker 4.2.x prior to 4.2.5 contains a denial of service vulnerability in the Email::Address:List module. This means...
How to remediate – Request Tracker Session Fixation Vulnerability 1. Introduction 2. Technical Explanation The vulnerability arises because RT authenticates users without invalidating their existing session ID. An attacker...
How to remediate – Resin resin-admin/digest.php XSS 1. Introduction The Resin resin-admin/digest.php XSS vulnerability is a cross-site scripting flaw in the Resin application server’s admin interface. This...
How to remediate – Response Splitting 1. Introduction Response Splitting is a web vulnerability where attackers can manipulate HTTP response headers. This allows them to inject...
How to remediate – Revive Adserver Detection 1. Introduction Revive Adserver Detection identifies instances of the open source Revive Adserver software running on a web server. This...