Solaris Management Console HTTP TRACE Method Cross-Site Scripting Vulnerability
Data de publicação: 21 julho 2015
Schweregrad: : Medium
Data do informe: 21 julho 2015
Descrição
The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.
Exposição das informações
Apply associated Trend Micro DPI Rules.
Solução
Trend Micro Deep Security DPI Rule Number: 1000126