Praetorian discovered this vulnerability while manually monitoring the data sent to the application in the server responses. The web banner revealed the application server software name and version number.
Field | Original Value | New Value |
---|---|---|
Assignee | Niteen Surwase [ niteen.surwase ] |
Status | New Request [ 10029 ] | Pending for Approval [ 10002 ] |
Status | Pending for Approval [ 10002 ] | Approved for Development [ 10003 ] |
Priority | Medium [ 3 ] | High [ 2 ] |
Attachment | iis_stripheaders_module_1.0.4.msi [ 14591 ] | |
Attachment | Server header remove Help.txt [ 14592 ] |
Attachment | After Configure.jpg [ 14593 ] | |
Attachment | Before Configure.jpg [ 14594 ] |
Assignee | Niteen Surwase [ niteen.surwase ] | Amit Gude [ amitg ] |
Status | Approved for Development [ 10003 ] | In Development [ 10007 ] |
Sprint | ST Sprint 1 [ 1 ] |
Rank | Ranked higher |
Assignee | Amit Gude [ amitg ] | Zeeshan Chishty [ zeeshan.chishty ] |
Status | In Development [ 10007 ] | Local Testing [ 10200 ] |
Status | Local Testing [ 10200 ] | Pending for Stage Approval [ 10300 ] |
Issue Importance | Must Have [ 11800 ] |
Assignee | Zeeshan Chishty [ zeeshan.chishty ] | Niteen Surwase [ niteen.surwase ] |
Component/s | BenAdmin [ 10100 ] |
Labels | Security |
Module | Parent values: BenAdmin(10100) | Parent values: BenAdmin(10100)Level 1 values: Security(10112) |
Item State | Parent values: LB QA(10201)Level 1 values: Ready for Stage(10213) |
Assignee | Niteen Surwase [ niteen.surwase ] | Zeeshan Chishty [ zeeshan.chishty ] |
Status | Pending for Stage Approval [ 10300 ] | Approved for Stage [ 10030 ] |
Item State | Parent values: LB QA(10201)Level 1 values: Ready for Stage(10213) | Parent values: Stage QA(10202)Level 1 values: Stage Deployed(11602) |
Developer | Niteen Surwase [ niteen.surwase ] |
Status | Approved for Stage [ 10030 ] | Stage Testing [ 10201 ] |
Status | Stage Testing [ 10201 ] | Pending for Production Approval [ 10301 ] |
Item State | Parent values: Stage QA(10202)Level 1 values: Stage Deployed(11602) | Parent values: Stage QA(10202)Level 1 values: Ready for Production(10217) |
Item State | Parent values: Stage QA(10202)Level 1 values: Ready for Production(10217) | Parent values: Production QA(10203)Level 1 values: Production Deployed(10221) |
Status | Pending for Production Approval [ 10301 ] | Approved for production [ 10034 ] |
Assignee | Zeeshan Chishty [ zeeshan.chishty ] | Deepali Tidke [ deepalit ] |
Item State | Parent values: Production QA(10203)Level 1 values: Production Deployed(10221) | Parent values: Production Complete(10222)Level 1 values: Closed(10223) |
Status | Approved for production [ 10034 ] | Production Testing [ 10202 ] |
Resolution | Fixed [ 1 ] | |
Status | Production Testing [ 10202 ] | Production Complete [ 10028 ] |
Status | Production Complete [ 10028 ] | Closed [ 6 ] |
Link | This issue relates to DEV-13718 [ DEV-13718 ] |
Transition | Time In Source Status | Execution Times |
---|
|
11s | 1 |
|
3s | 1 |
|
4d 22h 37m | 1 |
|
22d 23h 50m | 1 |
|
2d 2h 35m | 1 |
|
51d 21h 1m | 1 |
|
55m 59s | 1 |
|
1h 8m | 1 |
|
2d 19h 34m | 1 |
|
7d 2h 47m | 1 |
|
4s | 1 |
|
1s | 1 |
Commented code : SharedFunctionWebTier\SharedFunctionWebTier\Modules\SharedSessionModule.cs
This code is commented because for this patch, changes made in IIS Configuration Editor at Web Server.