This script is Copyright (C) 2013-2016 Tenable Network Security, Inc.
The remote web server is affected by a security bypass
According to the self-reported version in the Server response header,
the installed version of nginx is greater than 0.8.41 but prior to 1.4.4
/ 1.5.7. It is, therefore, affected by a security bypass vulnerability
in 'ngx_http_parse.c' when a file with a space at the end of the URI is
See also :
Either apply the patch manually or upgrade to nginx 1.4.4 / 1.5.7 or
Risk factor :
High / CVSS Base Score : 7.5
CVSS Temporal Score : 5.5
Public Exploit Available : false
Family: Web Servers
Nessus Plugin ID: 71117 ()
Bugtraq ID: 63814
CVE ID: CVE-2013-4547
Upgrade to Nessus Professional today!
Start your free Nessus Cloud trial now!
Begin Free Trial
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.