Forum Discussion

Waleed_Kodeh_36's avatar
Waleed_Kodeh_36
Icon for Nimbostratus rankNimbostratus
Sep 25, 2018

Web Vulnerability "Information Disclosure via HTTP Headers"

Dears ; Hope you are ding well . Kindly I have a vulnerability "Information Disclosure via HTTP Headers" with these details : The web server was found to be leaking sensitive information through the HTTP header: Server". I search for some solutions in order to solve this issue and some proper solution recommends to "Configure the web config file to disable version information and remove "Server"." So please advise if there is any configuration that can i do from our F5 Big-IP or any iRule to close this vulnerability.

 

Many thanks

 

  • There is an article "Response Header Allowed" on Devcentral which might help you out.