Insecure Http Methods Enabled-Attack And Penetration Testing (Doc ID 1154430.1)

Last updated on NOVEMBER 04, 2011

Applies to:

Oracle Clinical - Version: 4.6.0 and later   [Release: 4.6 and later ]
Information in this document applies to any platform.

Goal

Is it possible to disable methods like GET, HEAD, POST, PUT, DELETE, CONNECT, OPTIONS, PATCH, PROPFIND, PROPPATCH, MKCOPL, COPY, MOVE, LOCK, UNLOCK, TRACE from HTTP Server?


Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms