Detectify
Knowledge Base

Back to Knowledge Base

Support Center

HTTP Server Version

Last Updated: Apr 22, 2017 12:06AM CEST

This is a variation of Technology Disclosure. In this case, it is not only the web server or other software that is disclosed, but also the version of the web server. This makes the whole situation much more dangerous, as an attacker can now perform even more targeted attacks.

HTTP Server headers are often indexed in specific search engines as well. If a web server is exposed towards the Internet and discloses its version, it is safe to say someone will run an automated attack against it within hours after a vulnerability in the software has become publicly known.

What can happen, example and remediation?

Please see the article about Technology Disclosure. As this finding is just a variation of that, all the details are the same.

support@detectify.com
https://cdn.desk.com/
false
desk
Loading
seconds ago
a minute ago
minutes ago
an hour ago
hours ago
a day ago
days ago
about
false
Invalid characters found
/customer/en/portal/articles/autocomplete