Beefy Boxes and Bandwidth Generously Provided by pair Networks
Syntactic Confectionery Delight
 
PerlMonks  

Re^3: Need help figure out this Security vulnerability on this cgi code

by Anonymous Monk
on Apr 01, 2012 at 04:50 UTC ( #962833=note: print w/ replies, xml ) Need Help??


in reply to Re^2: Need help figure out this Security vulnerability on this cgi code
in thread Need help figure out this Security vulnerability on this cgi code

Well..It's all fromm the same App...the Security vulnerability reported by the Appscan is different & on another cgi Script...This according to the CWE-ID :598 "Information Exposure Through Query Strings in GET Request-The web application uses the GET method to process requests that contain sensitive information, which can expose that information through the browser's history, Referers, web logs, and other sources. "


Comment on Re^3: Need help figure out this Security vulnerability on this cgi code
Re^4: Need help figure out this Security vulnerability on this cgi code
by Anonymous Monk on Apr 01, 2012 at 05:25 UTC

    Well..It's all fromm the same App...the Security vulnerability reported by the Appscan is different & on another cgi Script

    Well, the answer doesn't change much, fix your html templates to appease "Appscan"

Log In?
Username:
Password:

What's my password?
Create A New User
Node Status?
node history
Node Type: note [id://962833]
help
Chatterbox?
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others taking refuge in the Monastery: (9)
As of 2014-09-19 07:38 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    How do you remember the number of days in each month?











    Results (133 votes), past polls