Remove Win 2008 Server´s Vulnerability (FastCGI [login to view URL] Cross-Site Scripting)

Cerrado Publicado Dec 3, 2015 Pagado a la entrega
Cerrado Pagado a la entrega

We need to Remove Win 2008 Server´s Vulnerability (FastCGI [login to view URL] Cross-Site Scripting)

Description

A cross-site scripting vulnerability in FastCGI [login to view URL] CGI script allows remote attackers to submit requests containing potentially malicious html or scripts to the Web server.

Observation

FastCGI is an extension of the Common Gateway Interface for different Web server platforms. Oracle Application Server and other Web server applications include the [login to view URL] FastCGI sample application. [login to view URL] returns server environment data or any parameters submitted to it. If remote attackers include scripts in parameters sent to [login to view URL], the Web client executes the script as though it were a legitimate script on the targeted server. Vulnerable systems: FastCGI - Apache 1.3.x, Oracle 9iAS For more information see: [login to view URL]

Recommendation

McAfee is unaware of any vendor supplied patch or update (2014-07-28) The following workaround is available: McAfee recommends that you remove the FastCGI sample scripts, including [login to view URL], from any server in a production environment.

After the job is done, we are going to re-scan the system looking for this vulnerability, if this is not present on the server, we will release the payment.

Thanks

Apache Seguridad informática Oracle Administración de sistemas Seguridad web

Nº del proyecto: #9035294

Sobre el proyecto

5 propuestas Proyecto remoto Activo Jan 9, 2016

5 freelancers están ofertando un promedio de $166 por este trabajo

usuf001

hi, I am aware of echo2 exe vulnerability. I can resolve the issue and make sure the scan is passed. thank yoy

$111 USD en 0 días
(98 comentarios)
5.9
rsen75

A proposal has not yet been provided

$210 USD en 6 días
(1 comentario)
2.6
therobust13

Already working on a project for data center to secure their servers for PCI compliance.

$155 USD en 3 días
(1 comentario)
2.2
thorapps

Hola, he visto que tienes varios proyectos publicados relacionados con win2008, te puedo solucionar todos los problemas que tengas por este precio. Si quieres contacta con nosotros y hablamos de ello. gracias

$234 USD en 3 días
(1 comentario)
0.8
Juzer5253

Hi, My work motto is to provide quality work to my client. I have read and understood your requirements completely and as I have expertise level experience in the same, I think I am right for this job. Followi Más

$120 USD en 3 días
(0 comentarios)
0.0