We were informed that there is a client-side desync vulnerability associated with the following URL on our PA server:
https://xxx.xxx.xxx.xxx:81/shared/pa_report.css
Is there a way to disable the embedded HTTP server? Or is there a way to mitigate this vulnerability?
Please advise - thank you.