CGI Information Disclosure Issue
I have a vulnerability scan that is showing that a server running TwistedWeb/2.5.0 on a port is subject to a, "Multiple Web Servers finger CGI Information Disclosure Vulnerability." We have verified that the actual "Finger" service is not running, and I personally do not believe it to be related to the "Finger" service. My question is does anyone know of an issue that exists in TwistedWeb on this topic? I have searched the tickets on the site page and have looked开发者_运维知识库 through posts here on StackOverflow but have not seen anything that helps to answer it.
Twisted 2.5.0 is 4 years old at this point. It's no longer being supported by the developers at twistedmatrix.com. It may well have bugs. Please upgrade.
精彩评论