Summary

Acunetix 360 identified a version disclosure (Oracle HTTP/Application Server) in target web server's HTTP response.

This information can help an attacker gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of Oracle HTTP/Application Server.

Impact

An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.

Severity

Low

Classification

CAPEC-170 CWE-205 HIPAA-164.306(a) 164.308(a) ISO27001-A.18.1.3 WASC-45 OWASP 2013-A5 OWASP 2017-A6