in reply to Need help figure out this Security vulnerability on this cgi code

In what way is this question different from Need help figure out CSRF vulnerability on this cgi code?

  • Comment on Re: Need help figure out this Security vulnerability on this cgi code

Replies are listed 'Best First'.
Re^2: Need help figure out this Security vulnerability on this cgi code
by planetscape (Chancellor) on Apr 01, 2012 at 04:29 UTC
      Well..It's all fromm the same App...the Security vulnerability reported by the Appscan is different & on another cgi Script...This according to the CWE-ID :598 "Information Exposure Through Query Strings in GET Request-The web application uses the GET method to process requests that contain sensitive information, which can expose that information through the browser's history, Referers, web logs, and other sources. "

        Well..It's all fromm the same App...the Security vulnerability reported by the Appscan is different & on another cgi Script

        Well, the answer doesn't change much, fix your html templates to appease "Appscan"