Data protection

Public access to a known tool in debug mode

Risk Level

Hazardous (3)

Platform(s)
  • N/A

Compliance Frameworks

Description

The public web page contains a tool running in debug mode and might expose sensitive information. By allowing public access to a tool that is in debug mode, it could potentially allow attackers to access sensitive information or perform other types of attacks. For example, an attacker could use the tool to view information about the system or network that would not normally be accessible in non-debug mode.
  • Recommended Mitigation

    Disable debug mode for the exposed tool