HTTP Options Method Enabled Security vulnerability RRS feed

  • Question

  • I have a Windows 2012r2 server with AZURE installed. No IIS. Yet, our security scan has detected HTTP Options Method Enabled. I normally associate this vulnerability with IIS but since this server does not have IIS, I suspect it is generated by the AZURE application. Is that correct? if so, how can I resolve it ?
    Thursday, October 17, 2019 1:54 PM


All replies

  • Hi CalMiyatake, 

    Can you please help clarify what do you mean when you say Windows 2012R2 Server with azure installed ? are you referring to Windows Azure Pack ? please share any documentation links you are following or explain more about your scenario so that could help us to route you to appropriate forum. 

    Thursday, October 17, 2019 3:26 PM
  • my mistake. it has the Microsoft Azure Services active
    Thursday, October 17, 2019 3:52 PM