Security vulnerability scan in AEM | Community
Skip to main content
Raja-Karuppsamy
Community Advisor
Community Advisor
September 3, 2021
Solved

Security vulnerability scan in AEM

  • September 3, 2021
  • 1 reply
  • 2671 views

Hi All,- Can you please suggest a tool/method to find the security vulnerabilities in AEM.

Please note - We are running in AEM 6.5.7 in AWS cloud platform.

 

 

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by Shubham_borole

Please look into using Checkmarx, Fortify and Sonarcube

1 reply

Shubham_borole
Community Advisor
Shubham_boroleCommunity AdvisorAccepted solution
Community Advisor
September 3, 2021

Please look into using Checkmarx, Fortify and Sonarcube

Raja-Karuppsamy
Community Advisor
Community Advisor
September 3, 2021

Thanks for your response . Can we able to figure out the open vulnerabilities from AEM application.

Like this security checklist : https://experienceleague.adobe.com/docs/experience-manager-dispatcher/using/getting-started/security-checklist.html

Kishore_Kumar_
Level 9
September 3, 2021

Hi @raja-karuppsamy ,

 

To ensure the blacklisted urls mentioned in dispatcher security checklist, try with curl command with your dispatcher urls, if it returns 200 you have to fix it. This curl command can also be automated through CI/CD via shell / any scripts and urls can be grouped into lists.