Loading HuntDB...

Sensitive information disclosure via response headers on jenkins.brew.sh

Low
H
Homebrew
Submitted None
Reported by mrnull1337

Vulnerability Details

Technical details and impact analysis

Information Exposure Through an Error Message
While logging into jenkins.brew.sh site, the vulnerable nginx version is disclosed via response headers. There is a chance with known vulnerabilities this could be compromised. so better to avoid banner disclosure with "Server Tokens Prod off" modification in conf file. Please let me know if any further information is required. Regards, Mr_R3boot.

Report Details

Additional information and metadata

State

Closed

Substate

Duplicate

Submitted

Weakness

Information Exposure Through an Error Message