Install, Upgrade, Clone, Patch - EBS (MOSC)

MOSC Banner

How to fix the vulnerabilities scanned by IBM APPSCAN

edited Aug 20, 2021 10:20AM in Install, Upgrade, Clone, Patch - EBS (MOSC) 1 commentAnswered

APPSCAN scans for a new type of problem: port listener command injection.
Could you give me some guidance on how to deal with this problem,thanks

Port listener command injection
Risk:
It is possible to run remote commands on the Web server. This usually means completely destroying the server and its contents
The reason:
Dangerous character cleanup was not performed correctly for user input
A fixed value:
Sets the "uri" attribute of the "domain" entity in the clientaccesspolicy. XML file to contain a specific domain name rather than any domain.

Tagged:

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center