Nessus扫出问题,请教解决方案
用Nessus 扫描自己的IIS机器发现:
Synopsis :
It is possible to enumerate web directories.
Description :
This plugin attempts to determine the presence of various
common dirs on the remote web server.
Plugin output :
The following directories were discovered:
/help, /html, /images, /js, /public, /search, /service, /styles, /member
While this is not, in and of itself, a bug, you should manually inspect
these directories to ensure that they are in compliance with company
security standards
Other references : OWASP:OWASP-CM-006
Plugin ID : 11032
The following CGI have been discovered :
Syntax : cginame (arguments [default value])
/Service/Mileages/encash_index.asp (MType [MA] )
/customer/customer.asp (customer [faq] )
........
Plugin ID : 10662
请教怎么解决? 谢谢