Apache MultiViews Enabled

Severity: Low

Invicti detected that Apache MultiViews is enabled.

This vulnerability can be used for locating and obtaining access to some hidden resources.

An attacker can use this functionality to aid in finding hidden files in the site and potentially gather further sensitive information.
Actions To Take#
  1. Change your server configuration file. A recommended configuration for the requested directory should be in the following format:

    <Directory /{YOUR DIRECTORY}>
    	Options FollowSymLinks

    Remove the MultiViews option from configuration.

Build your resistance to threats. And save hundreds of hours each month.

Get a demo See how it works