Re: Top Ten Web App Sec Problems
Deploying servers to support applications (be they front end web, mid
tier, back end database, etc.) with default configurations and uneeded
items such as example and test scripts, debugging information enabled
(i.e. informational error messages). You need to secure the infrastructure
as well as the web application, this can be a real pain when vendors
refuse to support recent service pack levels for IIS/etc.
-Kurt
Received on Sat Nov 30 20:14:18 2002
This archive was generated by hypermail 2.1.8
: Wed Aug 23 2006 - 14:07:44 EDT
|