<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>OWASP_2017_A03 on ZAP</title>
    <link>/alerttags/owasp_2017_a03/</link>
    <description>Recent content in OWASP_2017_A03 on ZAP</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <atom:link href="/alerttags/owasp_2017_a03/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>ASP.NET ViewState Disclosure</title>
      <link>/docs/alerts/10094-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10094-1/</guid>
      <description>&lt;p&gt;An ASP.NET ViewState was disclosed by the application/web server.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ASP.NET ViewState Integrity</title>
      <link>/docs/alerts/10094-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10094-2/</guid>
      <description>&lt;p&gt;The application does not use a Message Authentication Code (MAC) to protect the integrity of the ASP.NET ViewState, which can be tampered with by a malicious client.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Authentication Credentials Captured</title>
      <link>/docs/alerts/10105-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10105-1/</guid>
      <description>&lt;p&gt;An insecure authentication mechanism is in use. This allows an attacker on the network access to the userid and password of the authenticated user. For Basic Authentication, the attacker must merely monitor the network traffic until a Basic Authentication request is received, and then base64 decode the username and password. For Digest Authentication, the attacker has access to the username, and possibly also the password, if the hash (including a nonce) can be successfully cracked, or if a Man-In-The-Middle attack is mounted.&#xA;The attacker eavesdrops on the network until an authentication has completed.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Backup File Disclosure</title>
      <link>/docs/alerts/10095/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10095/</guid>
      <description>&lt;p&gt;A backup of the file was disclosed by the web server.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Base64 Disclosure</title>
      <link>/docs/alerts/10094-3/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10094-3/</guid>
      <description>&lt;p&gt;Base64 encoded data was disclosed by the application/web server. Note: in the interests of performance not all base64 strings in the response were analyzed individually, the entire response should be looked at by the analyst/security team/developer(s).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Big Redirect Detected (Potential Sensitive Information Leak)</title>
      <link>/docs/alerts/10044-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10044-1/</guid>
      <description>&lt;p&gt;The server has responded with a redirect that seems to provide a large response. This may indicate that although the server sent a redirect it also responded with body content (which may include sensitive details, PII, etc.).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cross-Origin-Embedder-Policy Header Missing or Invalid</title>
      <link>/docs/alerts/90004-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/90004-2/</guid>
      <description>&lt;p&gt;Cross-Origin-Embedder-Policy header is a response header that prevents a document from loading any cross-origin resources that don&amp;rsquo;t explicitly grant the document permission (using CORP or CORS).&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cross-Origin-Opener-Policy Header Missing or Invalid</title>
      <link>/docs/alerts/90004-3/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/90004-3/</guid>
      <description>&lt;p&gt;Cross-Origin-Opener-Policy header is a response header that allows a site to control if others included documents share the same browsing context. Sharing the same browsing context with untrusted documents might lead to data leak.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cross-Origin-Resource-Policy Header Missing or Invalid</title>
      <link>/docs/alerts/90004-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/90004-1/</guid>
      <description>&lt;p&gt;Cross-Origin-Resource-Policy header is an opt-in header designed to counter side-channels attacks like Spectre. Resource should be specifically set as shareable amongst different origins.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - BCrypt</title>
      <link>/docs/alerts/10097-7/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-7/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - BCrypt&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - Kerberos AFS DES</title>
      <link>/docs/alerts/10097-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-2/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - Kerberos AFS DES&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - LanMan</title>
      <link>/docs/alerts/10097-15/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-15/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - LanMan&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - LanMan / DES</title>
      <link>/docs/alerts/10097-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-1/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - LanMan / DES&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - MD4 / MD5</title>
      <link>/docs/alerts/10097-16/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-16/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - MD4 / MD5&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - MD5 Crypt</title>
      <link>/docs/alerts/10097-4/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-4/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - MD5 Crypt&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - NTLM</title>
      <link>/docs/alerts/10097-8/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-8/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - NTLM&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - OpenBSD Blowfish</title>
      <link>/docs/alerts/10097-3/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-3/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - OpenBSD Blowfish&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - Salted SHA-1</title>
      <link>/docs/alerts/10097-9/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-9/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - Salted SHA-1&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-1</title>
      <link>/docs/alerts/10097-14/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-14/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-1&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-224</title>
      <link>/docs/alerts/10097-13/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-13/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-224&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-256</title>
      <link>/docs/alerts/10097-12/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-12/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-256&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-256 Crypt</title>
      <link>/docs/alerts/10097-5/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-5/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-256 Crypt&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-384</title>
      <link>/docs/alerts/10097-11/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-11/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-384&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-512</title>
      <link>/docs/alerts/10097-10/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-10/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-512&lt;/p&gt;</description>
    </item>
    <item>
      <title>Hash Disclosure - SHA-512 Crypt</title>
      <link>/docs/alerts/10097-6/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10097-6/</guid>
      <description>&lt;p&gt;A hash was disclosed by the web server. - SHA-512 Crypt&lt;/p&gt;</description>
    </item>
    <item>
      <title>HTTPS Configuration</title>
      <link>/docs/alerts/10205-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10205-1/</guid>
      <description>&lt;p&gt;Performs HTTPS configuration analysis including certificate details and supported cipher suites.&lt;/p&gt;</description>
    </item>
    <item>
      <title>HTTPS Security Configuration Issues</title>
      <link>/docs/alerts/10205-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10205-2/</guid>
      <description>&lt;p&gt;The HTTPS configuration has one or more security issues identified by the TLS risk assessment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Information Disclosure - Debug Error Messages</title>
      <link>/docs/alerts/10023/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10023/</guid>
      <description>&lt;p&gt;The response appeared to contain common error messages returned by platforms such as ASP.NET, and Web-servers such as IIS and Apache. You can configure the list of common debug messages.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Information Disclosure - Sensitive Information in HTTP Referrer Header</title>
      <link>/docs/alerts/10025/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10025/</guid>
      <description>&lt;p&gt;The HTTP header may have leaked a potentially sensitive parameter to another domain. This can violate PCI and most organizational compliance policies. You can configure the list of strings for this check to add or remove values specific to your environment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Information Disclosure - Sensitive Information in URL</title>
      <link>/docs/alerts/10024/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10024/</guid>
      <description>&lt;p&gt;The request appeared to contain sensitive information leaked in the URL. This can violate PCI and most organizational compliance policies. You can configure the list of strings for this check to add or remove values specific to your environment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Information Disclosure - Suspicious Comments</title>
      <link>/docs/alerts/10027/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10027/</guid>
      <description>&lt;p&gt;The response appears to contain suspicious comments which may help an attacker.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Multiple HREFs Redirect Detected (Potential Sensitive Information Leak)</title>
      <link>/docs/alerts/10044-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10044-2/</guid>
      <description>&lt;p&gt;The server has responded with a redirect that seems to contain multiple links. This may indicate that although the server sent a redirect it also responded with body content links (which may include sensitive details, PII, lead to admin panels, etc.).&lt;/p&gt;</description>
    </item>
    <item>
      <title>PII Disclosure</title>
      <link>/docs/alerts/10062/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10062/</guid>
      <description>&lt;p&gt;The response contains Personally Identifiable Information, such as CC number, SSN and similar sensitive data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Private IP Disclosure</title>
      <link>/docs/alerts/2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/2/</guid>
      <description>&lt;p&gt;A private IP (such as 10.x.x.x, 172.x.x.x, 192.168.x.x) or an Amazon EC2 private hostname (for example, ip-10-0-56-78) has been found in the HTTP response body. This information might be helpful for further attacks targeting internal systems.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Referer Exposes Session ID</title>
      <link>/docs/alerts/3-3/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/3-3/</guid>
      <description>&lt;p&gt;A hyperlink pointing to another host name was found. As session ID URL rewrite is used, it may be disclosed in referer header to external hosts.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Server Leaks Information via &#34;X-Powered-By&#34; HTTP Response Header Field(s)</title>
      <link>/docs/alerts/10037/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10037/</guid>
      <description>&lt;p&gt;The web/application server is leaking information via one or more &amp;ldquo;X-Powered-By&amp;rdquo; HTTP response headers. Access to such information may facilitate attackers identifying other frameworks/components your web application is reliant upon and the vulnerabilities such components may be subject to.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Session ID in URL Rewrite</title>
      <link>/docs/alerts/3-1/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/3-1/</guid>
      <description>&lt;p&gt;URL rewrite is used to track user session ID. The session ID may be disclosed via cross-site referer header. In addition, the session ID might be stored in browser history or server logs.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Session ID in URL Rewrite</title>
      <link>/docs/alerts/3-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/3-2/</guid>
      <description>&lt;p&gt;URL rewrite is used to track user session ID. The session ID may be disclosed via cross-site referer header. In addition, the session ID might be stored in browser history or server logs.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Timestamp Disclosure - Unix</title>
      <link>/docs/alerts/10096/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10096/</guid>
      <description>&lt;p&gt;A timestamp was disclosed by the application/web server. - Unix&lt;/p&gt;</description>
    </item>
    <item>
      <title>Weak Authentication Method</title>
      <link>/docs/alerts/10105-2/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10105-2/</guid>
      <description>&lt;p&gt;HTTP basic or digest authentication has been used over an unsecured connection. The credentials can be read and then reused by someone with access to the network.&lt;/p&gt;</description>
    </item>
    <item>
      <title>X-ChromeLogger-Data (XCOLD) Header Information Leak</title>
      <link>/docs/alerts/10052/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10052/</guid>
      <description>&lt;p&gt;The server is leaking information through the X-ChromeLogger-Data (or X-ChromePhp-Data) response header. The content of such headers can be customized by the developer, however it is not uncommon to find: server file system locations, vhost declarations, etc.&lt;/p&gt;</description>
    </item>
    <item>
      <title>X-Debug-Token Information Leak</title>
      <link>/docs/alerts/10056/</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>/docs/alerts/10056/</guid>
      <description>&lt;p&gt;The response contained an X-Debug-Token or X-Debug-Token-Link header. This indicates that Symfony&amp;rsquo;s Profiler may be in use and exposing sensitive data.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
