]> source.dussan.org Git - sonarqube.git/commitdiff
SONAR-13688 add note about unquoted service path attacks for SQ as a service
authormichaelbirnstiehl <michael.birnstiehl@sonarsource.com>
Mon, 14 Sep 2020 21:24:04 +0000 (16:24 -0500)
committersonartech <sonartech@sonarsource.com>
Wed, 30 Sep 2020 20:07:46 +0000 (20:07 +0000)
server/sonar-docs/src/pages/setup/operate-server.md

index 4db8cf8718d9ed3f6b076c970fa39efc1dea35d9..c1cc96311494be8a7e8435e95e7947a690db298d 100644 (file)
@@ -5,6 +5,9 @@ url: /setup/operate-server/
 
 ## Running SonarQube as a Service on Windows
 
+[[warning]]
+| When installing SonarQube as a service on Windows, the path to the executable should be quoted to prevent unquoted service path attacks. 
+
 ### Install or Uninstall NT Service (may have to run these files via Run As Administrator):
 
 ```