Unlock a world of possibilities! Login now and discover the exclusive benefits awaiting you.
Hi Qlik Fam,
Requesting assistance for the error encountered upon conducting a VAPT Qualys scan on our Qlik reporting server, which has shown 3 vulnerable, we would appreciate your insights on the following vulnerable listed below:
1. HTTP Security Header Not Detected
2. Secure Sockets Layer/Transport Layer Security (SSL/TLS) server supports Transport Layer Security (TLSv1.0)
3. TLS Padding Oracle Vulnerability (Zombie POODLE and GOLDENDOODLE)
Thank you in advance.
Hi,
Please execute IIS Crypto to disable weak cipher suite/TLS protocol: https://www.nartac.com/Products/IISCrypto
Then perform a new scan of your server.
Kind regards