-
Bug
-
Resolution: Done-Errata
-
Major
-
MTA 7.0.0
-
None
-
None
-
False
-
-
False
-
-
-
No
Description of problem:
FROM THE DAST ANALYSIS
The web/application server is leaking information via one or more \"X-Powered-By\" HTTP response headers. Access to such information may facilitate attackers identifying other frameworks/components your web application is reliant upon and the vulnerabilities such components may be subject to.
Version-Release number of selected component (if applicable): 7.0.0
How reproducible: Always
Expected results:
Ensure that your web server, application server, load balancer, etc. is configured to suppress \"X-Powered-By\" headers.
Additional info:
Attached you can find all the affected endpoints
- links to
-
RHBA-2023:120350 Migration Toolkit for Applications bug fix and enhancement update
- mentioned on