Script Request Authorization should be enabled

Impact area

Security

Severity

High

Affected element

System property

Rule ID

SN-0196

Impact

Without appropriate authorization configured on the incoming Script requests, an unauthorized user can get access to sensitive content/data on the target instance.

Remediation

Enable the Script Request Authorization property glide.basicauth.required.scriptedprocessor.

Time to fix

15 min

References

This rule is linked to Common Weakness Enumeration CWE-862 Missing Authorization.




Last modified on Oct 13, 2020