'; } else{ echo ''; } echo '
|
|
|||
Release Date:2026/6/15
Rule Name:WADL Application Definition File Exposure
Severity:high
CVE ID:
| Descripiton:
|
Sensitive information is a kind of information that is not known by the public and has actual or potential value. Loss, misuse or unauthorized access to sensitive information may do harm to individuals, enterprises and even the society. Web Application Description Language (WADL) is an XML-based machine-readable description of HTTP-based web applications. When the application.wadl file is exposed to untrusted users, attackers can obtain detailed information about RESTful web services, including resources, methods, request/response formats, and parameters. This information can be used to discover vulnerabilities or craft targeted attacks. This rule supports to defend the A2: Cryptgraphic Failures of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.