Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Samsur121
Explorer

OPTIONS Method enabled vulnerability detected on gateways WAN IP.

Anyone have any idea to close "OPTIONS Method enabled" VA on checkpoint firewall. Our VAPT team scans the firewall WAN IP and detected this "application supports the OPTIONS HTTP method due to web server misconfiguration."

 

 

0 Kudos
4 Replies
G_W_Albrecht
Legend Legend
Legend

Options is regarded safer as it is read only, different to post or put - and web servers today do operate on https only. So why this is a vulnerability, please give sources / references !

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
Chris_Atkinson
Employee Employee
Employee

Encourage you to share further details via a support ticket for review.

See also: sk69160

 

CCSM R77/R80/ELITE
0 Kudos
G_W_Albrecht
Legend Legend
Legend

0 Kudos
Samsur121
Explorer

Thank you all for the updates, It was false a positive.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events