Sensitive information disclosure via response headers on jenkins.brew.sh
Low
H
Homebrew
Submitted None
Actions:
Reported by
mrnull1337
Vulnerability Details
Technical details and impact analysis
While logging into jenkins.brew.sh site, the vulnerable nginx version is disclosed via response headers.
There is a chance with known vulnerabilities this could be compromised. so better to avoid banner disclosure with "Server Tokens Prod off" modification in conf file.
Please let me know if any further information is required.
Regards,
Mr_R3boot.
Report Details
Additional information and metadata
State
Closed
Substate
Duplicate
Submitted
Weakness
Information Exposure Through an Error Message