mod_gzip Detection

This script is Copyright (C) 2003-2013 Tenable Network Security, Inc.

Synopsis :

The remote web server is affected by an information disclosure issue.

Description :

The remote host is running mod_gzip and configured so that its status
can be obtained by sending a special request.

Solution :

If you do not use this module, disable it completely.

Otherwise, update the web server's configuration to limit access,
require authentication, or use a different URL associated with the
'mod_gzip_command_version' directive.

Risk factor :

Medium / CVSS Base Score : 5.0

Family: Web Servers

Nessus Plugin ID: 11685 ()

Bugtraq ID:


Ready to Scan Unlimited IPs & Run Compliance Checks?

Upgrade to Nessus Professional today!

Buy Now

Combine the Power of Nessus with the Ease of Cloud

Start your free Nessus Cloud trial now!

Begin Free Trial