SOAP/XML Plaintext Credentials Disclosure

medium Nessus Network Monitor Plugin ID 4758

Synopsis

The remote host is running an inherently insecure protocol or application.

Description

The remote SOAP server was just observed receiving what appears to be login information over unencrypted HTTP.

Solution

Ensure that confidential data is only passed over an encryped protocol.

Plugin Details

Severity: Medium

ID: 4758

Family: Web Servers

Published: 11/14/2008

Updated: 1/15/2016