logo

Directory Browsing

  • Risk:
  • Medium

  • Type:
  • Active
Summary
It is possible to view the directory listing. Directory listing may reveal hidden scripts, include files, backup source files, etc. which can be accessed to read sensitive information.
Solution
Disable directory browsing. If this is required, make sure the listed files does not induce risks.
References

https://httpd.apache.org/docs/mod/core.html#options

Back <<