Project

General

Profile

Actions

Task #11720

closed
RJ VP

Task #11711: Security Vulnerability Scan 2023-05-18

Fix security issues in traefik.survey.ase.cit.tum.de

Task #11720: Fix security issues in traefik.survey.ase.cit.tum.de

Added by Robert Jandow about 2 months ago. Updated about 2 months ago.

Status:
Closed
Priority:
Minor
Start date:
06.03.2026
Due date:
% Done:

0%

Estimated time:
SecReporter:
Originally created on:
23.05.2023
Originally updated on:
05.06.2023
Original due date:

Description

{code:java}
############################################################

host: traefik.survey.ase.cs.tum.edu, ip: 131.159.89.172, tcp port: 443

  • 6.4 - Missing Secure Cookie Attribute (HTTP)
  • 2023-05-15T11:16:21Z - 058dd816-81ad-4666-b8d1-036bbc87f347 - 1.3.6.1.4.1.25623.1.0.902661
    summary: The remote HTTP web server / application is missing to set the
    'Secure' cookie attribute for one or more sent HTTP cookie.
    problem: The cookies:

Set-Cookie: PHPSESSID=replaced; path=/; HttpOnly

are missing the "Secure" cookie attribute.

impact:

solution: Mitigation: Set the 'Secure' cookie attribute for any cookies that are sent
over a SSL/TLS connection.
{code}

VP Updated by Vincent Picking about 2 months ago Actions #1

Deactivated survey subdomain.

Updated by Anonymous about 2 months ago Actions #2

  • Parent task set to #11711
Actions

Also available in: PDF Atom