Remediation Steps
Follow the steps below to remediate this finding on Nginx webserver.
PHP-FPM adds X-Powered-By by default. Disable it in php.ini:
expose_php = Off
Restart PHP-FPM:
sudo systemctl restart php8.x-fpmAlternatively, strip the header in Nginx:
fastcgi_hide_header X-Powered-By; proxy_hide_header X-Powered-By;Reload Nginx:
sudo systemctl reload nginx