Using Appian 6.6.0 and running JBoss on Windows 2008, I want to see if JBoss Ent

Using Appian 6.6.0 and running JBoss on Windows 2008, I want to see if JBoss Enterprise Application Platofrm (EAP) is installed or not. Checking through the <appian>/bin folder I did not find anything that referenced this so we are thinking it could be a false positive. A security scan flagged it as a potiential security issue but I think that EAP is only used on Redhat systems. Can anyone verify this? Thanks in advance!

[[JBoss Enterprise Application Platform (EAP) contains a vulnerability in its status servlet when handling a "full=true" query string. This could be exploited by attackers to gain sensitive information on deployed web contexts (e.g. Application lists) and subsequently leveraged to research further attacks.]]

OriginalPostID-24401

OriginalPostID-24401

  Discussion posts and replies are publicly visible

Parents Reply Children
No Data