Microsoft Exchange Client Access Server Information Disclosure
EOL Check



Remediation
Header Modification
URL Rewrite
Last updated



Last updated
openssl s_client -host hostname.domain.com -port 443 GET /autodiscover/autodiscover.xml HTTP/1.0Rule Type: Replace Header
Header Field: WWW-Authenticate
Match String: /(Basic realm=)(\"[0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3}.[0-9]{1,3}\")/
Replacement: \1"domain.com"