Can ".java" files be removed from CA Service Desk Manager file structure to mitigate Vuln ID: V-76717: IIS 8.5 Server Security?
You may remove all the "example" files that are provided however, if certain other .java files are removed, it could prevent the application from working properly. Here is the complete list of files that MUST remain in place for proper operation:
%NX_ROOT%\bopcfg\www\CATALINA_BASE\work\Catalina\localhost\AMS\org\apache\jsp\pages\owrView_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE\work\Catalina\localhost\AMS\org\apache\jsp\pages\product_005ffooter_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE\work\Catalina\localhost\AMS\org\apache\jsp\pages\product_005fheader_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE\work\Catalina\localhost\ROOT\org\apache\jsp\index_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE_VIZ\work\Catalina\localhost\CMDBVisualizer\org\apache\jsp\jsp\admin_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE_VIZ\work\Catalina\localhost\CMDBVisualizer\org\apache\jsp\jsp\VisualizerMain_jsp.java
%NX_ROOT%\bopcfg\www\CATALINA_BASE\webapps\axis\SOAPMonitorApplet.java