PUT Method Enabled

Febna V M
Published on
01 Oct 2021

The PUT method is typically used to upload data to a server at a URL provided by the user. If this option is enabled, an attacker may be able to inject arbitrary (and potentially malicious) content into the app. This could lead to the compromise of other users (by uploading client-executable scripts), the compromise of the server or other attacks depending on the server’s settings by uploading server-executable code.

Mitigation / Precaution

In order to patch this vulnerability, it is advised to disable the PUT method on the server according to your platform’s documentation.

