Korean
<< Back
VID 210176
Severity 30
Port 80, ...
Protocol TCP
Class CGI
Detailed Description HTTP basic or digest authentication has been used over an unsecured connection. The credentials can be read and then reused by someone with access to the network.

* References:
https://developer.mozilla.org/en-US/docs/Web/HTTP/Authentication

* Platforms Affected:
Any operating system Any version
Recommendation Protect the connection using HTTPS or use a stronger authentication mechanism.
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)