Version Disclosure (RubyGems)
Summary#
Invicti identified that the target web server is disclosing the RubyGems version in its HTTP response. This information might help an attacker gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of RubyGems.
Impact#
An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.
Remediation#
Configure your web server to prevent information leakage from its HTTP response.
Classifications#