Misconfigured FrontPage Information Disclosure Scanner
Misconfigured FrontPage can cause many private data to be leaked by attackers.
Short Info
Level
Medium
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
5 seconds
Time Interval
2 months 4 weeks
Scan only one
URL
Toolbox
-
If your SharePoint application is anonymously accessible then it's recommended to consider implementing authorization rule to restrict access to web services , or resources under _vti_bin, _vti_pvt , /_vti_bin/spsdisco.aspx ... to at least prevent attacker from accessing these resources to gain information like SharePoint version or FrontPage configuration information.