cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea96ba46591629a2ee1cbb56ea163e836bb
Found 23 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/pb_block_image /media/cache/pb_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07043403d3043403d3043403d3043403d3043403d3
Symfony profiler enabled: https://21red-se.com/_profiler/empty/search/results
Open service 188.114.97.3:443 · 21red-se.com
2026-01-09 10:02
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 10:02:49 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=lnN8gjhpyE1XTlP9Knxw6VWTJVRCT59F2NkvKIxrLXQ0tAj2Jah8IP8BPtiUE1g0bKVnE3Nu%2FyIxd8zZqfDOFgw8PGdH4egSKbbHFA%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 10:02:49 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=12,cfOrigin;dur=1095
CF-RAY: 9bb319e46dca38ce-SJC
Open service 2a06:98c1:3121::3:443 · 21red-se.com
2026-01-08 18:47
HTTP/1.1 200 OK
Date: Thu, 08 Jan 2026 18:47:57 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Mp2%2Bt5DNKt0wqpz7nk%2FSbEgqci6sA4z6Ud4PUQ7r05tEcABjZSCVP9uN3iERokMZqXYjgA6qUi%2BDAhdk7yu2GmdjLTw4dxQC43PljDA33iStYI8dNBsS9w%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 08 Feb 2026 18:47:57 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9badddc61cfc2d8e-AMS
Open service 188.114.97.3:443 · 21red-se.com
2026-01-02 14:51
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 14:51:32 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=DjK7IdKB7hv1IJ2KP9qNzhQXpIxIW6u4NbFE62HVw3T1YvMav2ZN%2BnO9EfKnRa9tvoMTEpRhkvk7ILOTGwHtic802ty9m0f2fCVklA%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 14:51:32 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b7b1335de7a9f52-FRA
Open service 2a06:98c1:3121::3:443 · 21red-se.com
2026-01-01 19:19
HTTP/1.1 200 OK
Date: Thu, 01 Jan 2026 19:19:50 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=MJb3KIJk%2BbMYIZGDUhaKnQQeZTXeIBsSXcrxrLLMGahRT1h2g1DNV5%2FJKekogwkcSyfLk9aCyUP%2FbKwEpxsG5KLPYv3Tp2kJI3WMRxsTH6onzRGA9h8%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 01 Feb 2026 19:19:50 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=1061
CF-RAY: 9b745ed6e9d96af7-SJC
Open service 2a06:98c1:3121::3:443 · 21red-se.com
2025-12-30 03:51
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 03:51:42 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=4Lk1gSCTYAtvEouWYx1Q2TauosdVXe65eQTjY0Oz6GtamJHN6lJXBkjgM6So%2B5FjWDezDM0SRCGn7aytL0Uk2IC2L7RxGiwQKpnfDAKqcdk%2FDssp85aGfQ%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 03:51:41 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b5e94843d7135ca-LHR
Open service 188.114.97.3:443 · 21red-se.com
2025-12-22 16:58
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 16:58:02 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=OtsqNPIwFq2ubZH1IlsbmTqaREsb0vJB1Dro%2ByYJWdzCQ%2BDqodMkwQD1OT9zBtvY6HtP3ycrMjmOVbadjFi5UImeqMBmPBZ6yJD6Ww%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 16:58:02 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b212960b8a803c4-FRA
Open service 2a06:98c1:3121::3:443 · 21red-se.com
2025-12-22 04:34
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 04:34:16 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=qGHJb%2Fj3j1BROjy%2BbVxmDl%2FEWkbccpcicdQMYAYgmnpcbhTPIiWmFHPr5dWezfPAWYWo%2FdMvZFqJt2uNTba6cgSNFGEzoKOJiCplmCfV1eYkPPzmXwrjgQ%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 04:34:16 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=14,cfOrigin;dur=1036
CF-RAY: 9b1ce7dd9bca6c05-SIN
Open service 188.114.97.3:443 · 21red-se.com
2025-12-20 17:38
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 17:38:14 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=MmAyKmDg12cHSMrZIyb1NgahrA7LAKF2spJFJBPEGNSqv4WSdC11YDncy%2BYOYfZUA2q8T%2BpnmbbcqlbwL%2FUqbV3gShJcszQgUx0L2w%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 17:38:14 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b10e9880d719207-FRA
Open service 2a06:98c1:3121::3:443 · 21red-se.com
2025-12-20 04:30
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 04:30:40 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Yk8whQ1mxs8FFm5XWKoeGHAgDTSZJYFgGCsgQSGtW860j8zBXrpHlJQerDOdqBX4yA9iNPYpxPJGZyN7h%2BpH2zzzF1R1EUqWd3YX4SQmTYMUU0CL273kkQ%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 04:30:40 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b0c67de8a7ecf10-AMS
Open service 188.114.97.3:443 · 21red-se.com
2025-12-19 06:31
HTTP/1.1 200 OK
Date: Fri, 19 Dec 2025 06:31:17 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=mvZnCxuGIePTunSrZSi2RaAKzGfrvt6lYD2MG28TOMyLaeJtvK2MBwXFU1gTaH3uvKH4bIM6RdSVZE%2FqHI%2FvQbofurhI1x61lgfx4Q%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 19 Jan 2026 06:31:17 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=7,cfOrigin;dur=876
CF-RAY: 9b04db274eaaec72-YYZ