WebDAV Detection

By
Rejah Rehim
Published on
24 Jun 2018

WebDAV is an extension to the HTTP protocol. This protocol allows remote authorized users to add or remove content from the web server. This web application improperly handles objects in memory. It might allow an attacker to run arbitrary code on the end user’s system. An attacker who has successfully exploited this vulnerability could gain the same user rights as the current user.

Impact

The attacker will gain full access to add and change content in the web application.

Mitigation / Precaution The solution for this vulnerability include:-

  • If you are not using WebDAV, it is better that you disable it.
  • Try to use Vulnerability Management tools like AVDS. It detects WebDAV in your web application.
Automated human-like penetration testing for your web apps & APIs
Teams using Beagle Security are set up in minutes, embrace release-based CI/CD security testing and save up to 65% with timely remediation of vulnerabilities. Sign up for a free account to see what it can do for you.

Written by
Rejah Rehim
Rejah Rehim
Co-founder, Director
Find website security issues in a flash
Improve your website's security posture with proactive vulnerability detection.
Free website security assessment
Experience the power of automated penetration testing & contextual reporting.