The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Excessive information provided in response headers

Srinivashan | Last updated: Feb 10, 2020 01:31PM UTC

Hi, I have done a security testing in Burp Suite, while doing we have faced the below issue for our application. issue description : By default, excessive information about the server ISS 10 application are returned in the response headers. These headers can be used to help identify security flaws which may exist as a result of the choice of technology exposed in these headers. All the Server responses have the ISS10 Headers. By scanning using Burp suite pro, I have retrieved the above issue but i couldn't reproduce manually using intercepts. Can you help me out in identifying the issue manually? Thanks in advance.

Michelle, PortSwigger Agent | Last updated: Feb 18, 2020 10:16AM UTC