Description
The Server header reveals detailed information about the server application handling the request, including the Nginx version. Exposing this information can aid attackers in identifying vulnerabilities and launching targeted attacks.
Test for Nginx Version Disclosure Vulnerability with SmartScanner
Donwload FREE!Recommendation
To mitigate this issue, open the Nginx configuration file (nginx.conf) and add the following line to either http, server, or location sections:
server_tokens off;
Then, restart the web server to apply the changes.
References
Could your website be exposed too?
SmartScanner can check your website for Nginx Version Disclosure and gives you actionable findings to investigate.
Start a free scanRelated Issues
- Apache Version Disclosure - Vulnerability
- Server Version Disclosure - Vulnerability
- ASP.NET Version Disclosure - Vulnerability
- Tomcat Version Disclosure - Vulnerability


