Description
You want to disable default servlet mapping “/servlet/*” to prevent accessing servlets via a different path anonymously regardless of the security constraints defined in the web.xml.
Available fix and Supported packages
- TMTSERVER | 140 | 140
Affected component
- IS-R-TRN-EFT
Transnet Centralized EFT
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1511415