Peter Chen created FINERACT-2130:
------------------------------------

             Summary: Server Version Disclosure
                 Key: FINERACT-2130
                 URL: https://issues.apache.org/jira/browse/FINERACT-2130
             Project: Apache Fineract
          Issue Type: Bug
          Components: Client, Security
            Reporter: Peter Chen


h2. Description
 
It was observed that the application discloses server/framework type and 
version used. Disclosed information is listed below:
 
h2. Reproduction Steps
 
 # Inspect a request 
 # Observe that the response discloses server version. i.e.

 ## Server:awselb/2.0

 
h2. Impact Details
An attacker could determine vulnerabilities associated with the server version 
and launch platform specific attacks.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to