Skip to content
Snippets Groups Projects

Add httpd configuration for basic security

Following security team report:

From the CERN WhiteHat challenge, it was found that the URL https://some_wordpress_site.web.cern.ch/.wp-config.php.swp discloses secret key and database information. Also, the URL https://some_wordpress_site.web.cern.ch/wp-includes/ has directory listings enabled, making it possible to explore web server contents.

Merge request reports

Loading
Loading

Activity

Filter activity
  • Approvals
  • Assignees & reviewers
  • Comments (from bots)
  • Comments (from users)
  • Commits & branches
  • Edits
  • Labels
  • Lock status
  • Mentions
  • Merge request status
  • Tracking
Please register or sign in to reply
Loading