logo

Database

Description

The application allows extra parameters injection to HTTP communication protocol, this can cause unexpected behavior on the server.

Impact

- Make the application to read malicious parameters and have a wrong behavior. - Cause unexpected behaviors on the application.

Recommendation

Make validations to guarantee that the quantity of received parameters is equal to the expected parameters on the server.

Threat

Anonymous attacker from the Internet.

Expected Remediation Time

⏱️ 30 minutes.