This topic is locked

Server Information Disclosure

11/26/2020 4:52:38 AM
PHPRunner General questions
M
m.salahi author

hi every one
General Overview

Information Leakage is an application weakness where an application reveals sensitive

data, such as technical details of the web application, environment, or user-specific

data. Sensitive data may be used by an attacker to exploit the target web application, its

hosting network, or its users. Therefore, leakage of sensitive data should be limited or

prevented whenever possible. Information Leakage, in its most common form, is the

result of one or more of the following conditions: A failure to scrub out HTML/Script

comments containing sensitive information,improper application or server configurations,

or differences in page responses for valid versus invalid data.
Affected URL: http://serverip/dashboard/

its strongly recommended to restrict access to this page.

Sergey Kornilov admin 11/26/2020

You need to use HTTPS instead of HTTP.