Linux Version Information Disclosure


During the scan, Kayran managed to find that the server provides detailed information about the Linux version being used. This information can be used to check what vulnerabilities might exist. And by doing so, assisting in launching targeted attacks later on.

An attacker could use the exposed information to exploit specific security vulnerabilities in the identified version. For example: there might be vulnerabilities in a certain web server versions that can allow an unauthorized attacker access to the server.

Information Disclosure occurs when a website unintentionally reveals sensitive information to its users.
Information disclosure can occur in various ways by abusing the sensitive information resources or messages that are unintentionally being displayed to unauthorized users.


To prevent this vulnerability, make sure that the server displays a generic, simple message and does not reveal any sensitive information about the server.


< Return to all Vulnerabilities

Crossing Scripts – XSS

Injections. SQL Injections. Cross-site Scripting (hence the amazing title “Crossing Scripts – XSS”). There all sorts of Injection-Based attacks, if you want to read about

Read More »