- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
Web Server Reverse Proxy Detection Vulnerability
[ Edited ]- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-12-2021 10:47 AM - edited 11-12-2021 10:48 AM
Hi Team,
one of my project , client scan all DDI Environment and send to to me the following vulnerability
- The remote web server seems to allow any anonymous user to use it as a reverse proxy. This may expose internal services to potential mapping and, henceforth, compromise and the solution should be Disable or restrict access the reverse proxy
anyone face this before ?
Re: Web Server Reverse Proxy Detection Vulnerability
[ Edited ]- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-01-2024 11:56 PM - edited 11-01-2024 11:59 PM
@imorsyhappyhour wrote:Hi Team,
one of my project , client scan all DDI Environment and send to to me the following vulnerability
- The remote web server seems to allow any anonymous user to use it as a reverse proxy. This may expose internal services to potential mapping and, henceforth, compromise and the solution should be Disable or restrict access the reverse proxy
anyone face this before ?
Yes, this vulnerability indicates that your web server is configured as a reverse proxy, allowing unauthorized access to internal services. To address this issue, you should disable the reverse proxy feature or restrict access to it by implementing proper authentication and authorization measures.
Re: Web Server Reverse Proxy Detection Vulnerability
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Tuesday
@imorsy wrote:Hi Team,
one of my project , client scan all DDI Environment and send to to me the following vulnerability
- The remote web server seems to allow any anonymous user to use it as a reverse proxy. This may expose internal services to potential mapping and, henceforth, compromise and the solution should be Disable or restrict access the reverse proxy
anyone face this before ?
Hello,
A client identified a vulnerability where the remote web server allows anonymous access as a reverse proxy, potentially exposing internal services. Has anyone encountered this issue before?
Best regards,
Daniel Lopez