Page 1 of 1

External Audit - some security questions

Posted: Mon Nov 18, 2019 11:22 am
by bzdega
Hi,

we made an externet security audit to check our TSplus installations.

There were some issues found, which comes from the TSplus installation, e.g.:

the webserver folder is writable for every user, so html- and javascript code could be placed in there by every user (see attached screenshot)
2019-11-18 11_53_22-demo.proalpha.cloud und 3 weitere Seiten - Personal - Microsoft Edge.png
what are the minimum access righst for the webserver folder?

Michael