This script is Copyright (C) 2016-2017 Tenable Network Security, Inc.
The remote FreeBSD host is missing a security-related update.
Apache Software Foundation reports :
The Apache HTTPD web server (from 2.4.18-2.4.20) did not validate a
X509 client certificate correctly when experimental module for the
HTTP/2 protocol is used to access a resource.
The net result is that a resource that should require a valid client
certificate in order to get access can be accessed without that
See also :
Update the affected package.
Risk factor :
Medium / CVSS Base Score : 5.0