How to fix the vulnerabilities scanned by IBM APPSCAN
APPSCAN scans for a new type of problem: port listener command injection.
Could you give me some guidance on how to deal with this problem,thanks
Port listener command injection
Risk:
It is possible to run remote commands on the Web server. This usually means completely destroying the server and its contents
The reason:
Dangerous character cleanup was not performed correctly for user input
A fixed value:
Sets the "uri" attribute of the "domain" entity in the clientaccesspolicy. XML file to contain a specific domain name rather than any domain.