IT flagged critical security issue

23 views
Skip to first unread message

Elise Tanner

unread,
Sep 8, 2022, 9:21:14 AM9/8/22
to ArchivesSpace
Hello All,

I'm not well-versed on IT security so I'm not 100% sure this is specifically an ArchivesSpace issue. But they told me to reach out to Aspace folks about this. IT said:

"Our security scanner claims to have found a Critical security issue on those servers: https://www.tenable.com/plugins/nessus/121039"

The servers they are referring to are our development and production servers for ArchivesSpace.

Has anybody else encountered this? Is this something we should be concerned about? Thanks in advance for your help.

Best,
Elise
--
Elise Tanner | Director of Digital Projects and Initiatives
Center for Arkansas History and Culture
University of Arkansas at Little Rock
501-320-5770emta...@ualr.edu | ualr.edu/cahc
facebook.com/ualrcahc | twitter.com/ualrcahc
she/her/hers

Brian

unread,
Sep 9, 2022, 8:29:59 AM9/9/22
to ArchivesSpace
Hello Elise,

It seems strange to me that the scanner is not reporting any specific urls. Could you confirm that this report was run against the staff user interface and not the public user interface or the backend API application? 

Brian

Reply all
Reply to author
Forward
0 new messages