Version Disclosure (GeoServer)
Summary#
Invicti identified a version disclosure (GeoServer) in the target web server's HTTP response. GeoServer is an open source server for sharing geospatial data.
Impact#
An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.
Remediation#
Restrict access to the /geoserver/web/? path on the web server where Jolokia is deployed
Classifications#