SOAP/XML Plaintext Credentials Disclosure

medium Nessus Network Monitor Plugin ID 4757

Synopsis

The remote host is running an inherently insecure protocol or application.

Description

The remote SOAP client was just observed sending what appears to be login information.

Solution

Ensure that confidential data is only passed over encrypted protocols.

Plugin Details

Severity: Medium

ID: 4757

Family: Web Clients

Published: 11/14/2008

Updated: 1/15/2016