How to remediate – Apache Struts Detection for Linux/UNIX 1. Introduction The remote host contains a web application that uses Apache Struts, a Java-based MVC framework. This vulnerability indicates...
How to remediate – Apache Struts struts-cookbook processSimple.do message Paramet… 1. Introduction The vulnerability “Apache Struts struts-cookbook processSimple.do message Paramet…” is a cross-site scripting (XSS) flaw in the demonstration application...
How to remediate – Apache Struts struts-examples upload-submit.do ‘theText’ Param… 1. Introduction The vulnerability “Apache Struts struts-examples upload-submit.do ‘theText’ Param…” is a cross-site scripting (XSS) flaw in the Struts framework’s...
How to remediate – Apache Tomcat SendMailServlet sendmail.jsp ‘mailfrom’ Paramete… 1. Introduction The Apache Tomcat SendMailServlet sendmail.jsp ‘mailfrom’ parameter is vulnerable to a cross-site scripting (XSS) attack. This allows an...
How to remediate – Apache Tomcat Site Enumeration 1. Introduction Apache Tomcat Site Enumeration refers to the retrieval of domain names and IP addresses from Apache Tomcat configuration...
How to remediate – Apache Tomcat Snoop Servlet Remote Information Disclosure 1. Introduction The Apache Tomcat Snoop Servlet Remote Information Disclosure vulnerability allows an attacker to gain sensitive information about a...
How to remediate – Apache Tomcat snoop.jsp URI XSS 1. Introduction The Apache Tomcat snoop.jsp URI XSS vulnerability allows a remote attacker to inject malicious script into a web...
How to remediate – Apache Unomi Detection. 1. Introduction Apache Unomi Detection indicates that the web interface for Apache Unomi is accessible on a remote host. This...
How to remediate – API Detected 1. Introduction The scan detected that some XHR requests seem to call an API. This indicates potential exposure of internal...
How to remediate – API Key Authentication Succeeded 1. Introduction API Key Authentication Succeeded indicates that a scan successfully authenticated against a web application using an API key....