Description
The Snoop Servlet returns information about the HTTP request itself and sometimes. It could help an attacker to prepare more advanced attacks
Remediation
Remove the Snoop Servlet from production systems or restrict access to it.
References
Related Vulnerabilities
WordPress Plugin Order Export & Order Import for WooCommerce Information Disclosure (1.0.8)
WordPress Plugin YaySMTP-Simple WP SMTP Mail Information Disclosure (2.2)
WordPress Plugin BuddyPress Information Disclosure (5.1.1)
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-10002)
Plone CMS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-4042)