-
Type:
Incident report
-
Resolution: Fixed
-
Priority:
Trivial
-
Affects Version/s: 2.2.20, 3.0.13, 3.2.10, 3.4.4, 4.0.0alpha1
-
Component/s: Frontend (F)
-
None
Multiple security issues in frontend:
- Inclusive Phishing through URL Redirection
- Database Error Pattern / Application Error reveals Internal Server Paths
- Requests vulnerable to Cross-Site Request Forgery
- UI Redress Attack (Clickjacking)
- Content sniffing not disabled
- Strict Transport Security is not enforced
- Browser cross-site scripting filter misconfiguration
- is duplicated by
-
ZBX-10272 URL Redirect
-
- Closed
-