Our vulnerability scanner is flagging some computers with this vulnerability:
Nessus Vulnerability Nonexistent Page (404) Physical Path Disclosure
Synopsis:
The remote web server is affected by an information disclosure vulnerability.
Description:
The remote web server reveals the physical path of the webroot when a nonexistent page is requested.
While printing errors to the output is useful for debugging applications, this feature should be disabled on production servers.
Solution:
Upgrade the web server to the latest version. Alternatively, reconfigure the web server to disable debug reporting.
URL: IPAddress:8000/niet42288973
Path disclosed: F:\Network_Share\Folder\.leaflet
Response snippet: Title not found: F:\Network_Share\Folder\.leaflet\niet42288973
I know nothing about using Obsidian.
How do I go about finding the problem on these computers and explaining to the users what need to be done to remediate this?