- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
Web Server Reverse Proxy Detection Vulnerability
[ Edited ]- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-12-2021 10:47 AM - edited 11-12-2021 10:48 AM
Hi Team,
one of my project , client scan all DDI Environment and send to to me the following vulnerability
- The remote web server seems to allow any anonymous user to use it as a reverse proxy. This may expose internal services to potential mapping and, henceforth, compromise and the solution should be Disable or restrict access the reverse proxy
anyone face this before ?
Re: Web Server Reverse Proxy Detection Vulnerability
[ Edited ]- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
3 weeks ago - last edited 3 weeks ago
@imorsyhappyhour wrote:Hi Team,
one of my project , client scan all DDI Environment and send to to me the following vulnerability
- The remote web server seems to allow any anonymous user to use it as a reverse proxy. This may expose internal services to potential mapping and, henceforth, compromise and the solution should be Disable or restrict access the reverse proxy
anyone face this before ?
Yes, this vulnerability indicates that your web server is configured as a reverse proxy, allowing unauthorized access to internal services. To address this issue, you should disable the reverse proxy feature or restrict access to it by implementing proper authentication and authorization measures.