CAPEC-170
CWE-205
HIPAA-164.306(a), 164.308(a)
ISO27001-A.18.1.3
WASC-13
OWASP 2013-A5
OWASP 2017-A6

Version Disclosure (TinyMCE)

Severity:
Low
Summary

Invicti identified a version disclosure (TinyMCE) in the target web server's HTTP response.

This information can help an attacker gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of Next.js.

Impact

An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.

Remediation

Configure your web server to prevent information leakage from its HTTP response.

Required Skills for Successful Exploitation
Actions To Take
Vulnerability Index

You can search and find all vulnerabilities

Select Vulnerability
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.