Insecure service configuration - Request Validation
Description
No requestValidationMode is assigned in the server configuration files, which would allow XSS attacks.
Impact
Obtain sensitive information through XSS attacks.
Recommendation
Activate recommended protection mechanisms such as Request Validation.
Threat
Anonymous attacker from the Internet.
Expected Remediation Time
⏱️ 60 minutes.
Requirements
266 - Disable insecure functionalities