cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
144
Views
0
Helpful
1
Replies

VA points on VESA

Vishal6
Level 6
Level 6

Hi,

Received below vulnerabilites on my virtual esa, need to know is it any ffirmware address this all.

 

 
 
 
SSH Server CBC Mode Ciphers EnabledCVE-2008-5161LowDisable all weak CBC-mode ciphers on the SSH server including 3des-cbc, aes128-cbc, aes192-cbc, aes256-cbc, blowfish-cbc, and cast128-cbc
Web Server Transmits Cleartext CredentialsCWE-523LowMake sure that every sensitive form transmits content over HTTPS.
Web Server Allows Password Auto-CompletionCWE-522LowAdd the attribute 'autocomplete=off' to these fields to prevent browsers from caching credentials.

 

1 Reply 1

Vishal6
Level 6
Level 6

pls help