Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Scan on March 15 2017, 11:06 AM UTC #33

Closed
4 tasks
excal04 opened this issue Jun 15, 2017 · 0 comments
Closed
4 tasks

Scan on March 15 2017, 11:06 AM UTC #33

excal04 opened this issue Jun 15, 2017 · 0 comments

Comments

@excal04
Copy link
Owner

excal04 commented Jun 15, 2017

  • Resolved
  • ID: NOCVE
  • Family/Group: SSL and TLS
  • Description: SSL/TLS: Missing secure Cookie Attribute|The host is running a server with SSL/TLS and is prone to information
    disclosure vulnerability.|Set the 'secure' attribute for any cookies that are sent over a SSL/TLS connection.
  • Port / Type: 443 / tcp
  • Severity: medium

  • Resolved
  • ID: NOCVE
  • Family/Group: Web application abuses
  • Description: Missing httpOnly Cookie Attribute|The application is missing the 'httpOnly' cookie attribute|Set the 'httpOnly' attribute for any session cookie.
  • Port / Type: 443 / tcp
  • Severity: medium

  • Resolved
  • ID: NOCVE
  • Family/Group: Web application abuses
  • Description: Missing httpOnly Cookie Attribute|The application is missing the 'httpOnly' cookie attribute|Set the 'httpOnly' attribute for any session cookie.
  • Port / Type: 80 / tcp
  • Severity: medium

  • Resolved
  • ID: NOCVE
  • Family/Group: General
  • Description: TCP timestamps|The remote host implements TCP timestamps and therefore allows to compute
    the uptime.|To disable TCP timestamps on linux add the line 'net.ipv4.tcp_timestamps
  • Port / Type: None / tcp
  • Severity: low

@excal04 excal04 closed this as completed Aug 4, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant