fmdano
12/31/2024, 2:49 PMPatrick
12/31/2024, 4:04 PMfmdano
12/31/2024, 4:12 PMPatrick
12/31/2024, 4:27 PMPatrick
12/31/2024, 4:27 PMfmdano
12/31/2024, 4:29 PMPatrick
12/31/2024, 4:32 PMPatrick
12/31/2024, 4:33 PMfmdano
12/31/2024, 4:33 PMbdw429s
12/31/2024, 7:03 PMbdw429s
12/31/2024, 7:03 PMfmdano
12/31/2024, 7:04 PMbdw429s
12/31/2024, 7:05 PMbdw429s
12/31/2024, 7:05 PMfmdano
12/31/2024, 7:06 PMbdw429s
12/31/2024, 7:06 PMWeb Server Misconfiguration: Unprotected Directory
could mean a lot of things so you're wasting your time going down any rabbit trails until you get clarificationbdw429s
12/31/2024, 7:06 PMbdw429s
12/31/2024, 7:06 PMPatrick
12/31/2024, 7:06 PMbdw429s
12/31/2024, 7:07 PMbdw429s
12/31/2024, 7:07 PMbdw429s
12/31/2024, 7:09 PMfmdano
12/31/2024, 7:10 PMbdw429s
12/31/2024, 7:11 PMfmdano
12/31/2024, 7:11 PMbdw429s
12/31/2024, 7:11 PMfmdano
12/31/2024, 7:12 PMbdw429s
12/31/2024, 7:12 PMbdw429s
12/31/2024, 7:13 PMan object referenced in a post request or query stringIs this true of the JS file in question?
fmdano
12/31/2024, 7:13 PMPatrick
12/31/2024, 7:13 PMPatrick
12/31/2024, 7:14 PMalholden
12/31/2024, 7:14 PMbdw429s
12/31/2024, 7:14 PMbdw429s
12/31/2024, 7:15 PMfmdano
12/31/2024, 7:16 PMbdw429s
12/31/2024, 7:16 PMfmdano
12/31/2024, 7:16 PMbdw429s
12/31/2024, 7:17 PMbdw429s
12/31/2024, 7:17 PMfmdano
12/31/2024, 7:18 PMPatrick
12/31/2024, 7:18 PMbdw429s
12/31/2024, 7:18 PM/scripts/utilities.js
should be a path the browser can hit. I assume the answer is yes. And if that's the case, then this seems like a false positive to me.bdw429s
12/31/2024, 7:19 PMCWE: CWE ID 527, CWE ID 538, CWE ID 548, CWE ID 552☝️ This is the CWE from your report
bdw429s
12/31/2024, 7:19 PMbdw429s
12/31/2024, 7:19 PMPatrick
12/31/2024, 7:19 PMfmdano
12/31/2024, 7:19 PMbdw429s
12/31/2024, 7:19 PMbdw429s
12/31/2024, 7:20 PMfmdano
12/31/2024, 7:20 PMbdw429s
12/31/2024, 7:20 PMbdw429s
12/31/2024, 7:21 PMbdw429s
12/31/2024, 7:21 PMfmdano
12/31/2024, 7:22 PMalholden
12/31/2024, 7:23 PMfmdano
12/31/2024, 7:23 PMalholden
12/31/2024, 7:24 PMalholden
12/31/2024, 7:24 PMbdw429s
12/31/2024, 7:25 PMalholden
12/31/2024, 7:25 PMfmdano
12/31/2024, 7:25 PMalholden
12/31/2024, 7:25 PMbdw429s
12/31/2024, 7:25 PMalholden
12/31/2024, 7:26 PMfmdano
12/31/2024, 7:27 PMalholden
12/31/2024, 7:28 PMfmdano
12/31/2024, 7:28 PMPatrick
12/31/2024, 7:30 PMfmdano
12/31/2024, 7:31 PMEvil Ware
01/02/2025, 4:34 PM