Download Netsparker
Pricing
Blog
Contact
Netsparker

OpenSSL Version Disclosure in HTTP Responses

Netsparker identified a version disclosure (OpenSSL) in target web server's HTTP response.

This information can help an attacker gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of OpenSSL.

Impact

An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.

Remedy

Configure your web server to prevent information leakage from the SERVER header of its HTTP response.  


Go back to the Complete list of Vulnerability Checks.