Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549d376c5b32e07ab2177f508d0a12693826b28820d
Public Swagger UI/API detected at path: /swagger/index.html - sample paths: DELETE /api/services/app/Role/Delete DELETE /api/services/app/Tenant/Delete DELETE /api/services/app/User/Delete GET /api/services/app/Role/Get GET /api/services/app/Role/GetAll GET /api/services/app/Role/GetAllPermissions GET /api/services/app/Role/GetRoleForEdit GET /api/services/app/Role/GetRoles GET /api/services/app/Session/GetCurrentLoginInformations GET /api/services/app/Tenant/Get GET /api/services/app/Tenant/GetAll GET /api/services/app/User/Get GET /api/services/app/User/GetAll GET /api/services/app/User/GetRoles GET /api/services/app/UserSettings/GetUserSettings GET /api/services/app/WhistleBlowing/DownloadAllWhistleblowingEntriesAsExcel GET /api/services/app/WhistleBlowing/DownloadDataProtectionAndPrivacyNotice GET /api/services/app/WhistleBlowing/GetAllWhistleBlowingEntry GET /api/services/app/WhistleBlowing/GetFirstXInProgressWhistleblowingEntries GET /api/services/app/WhistleBlowing/GetFirstXUnprocessedWhistleblowingEntries GET /api/services/app/WhistleBlowing/GetLastXUpdatedWhistleblowingEntries GET /api/services/app/WhistleBlowing/GetWhistleBlowingCaseFile POST /api/TokenAuth/Authenticate POST /api/services/app/Account/IsTenantAvailable POST /api/services/app/Account/Register POST /api/services/app/Account/ResetPassword POST /api/services/app/Account/ResolveTenantId POST /api/services/app/Account/SendPasswordResetCode POST /api/services/app/Configuration/ChangeUiTheme POST /api/services/app/FileConversion/Convert POST /api/services/app/FileConversion/ConvertObsolete POST /api/services/app/Role/Create POST /api/services/app/Tenant/Create POST /api/services/app/User/Activate POST /api/services/app/User/ChangePassword POST /api/services/app/User/Create POST /api/services/app/User/DeActivate POST /api/services/app/User/ResetPassword POST /api/services/app/UserSettings/ChangeEmailAndNotifySettings POST /api/services/app/UserSettings/ChangeLanguage POST /api/services/app/UserSettings/SetSettingsForUsers POST /api/services/app/WhistleBlowing/AddCommentToWhistleblowingEntry POST /api/services/app/WhistleBlowing/CreateWhistleBlowingEntry POST /api/services/app/WhistleBlowing/DownloadWhistleblowingEntryAsPDF POST /api/services/app/WhistleBlowing/GetWhistleBlowingEntryById POST /api/services/app/WhistleBlowing/GetWhistleBlowingEntryByToken POST /api/services/app/WhistleBlowing/RateOrUpdateWhistleBlowingEntry POST /api/services/app/WhistleBlowing/SetAnonymEmailAndNotifySettingsOnWhistleblowingEntry POST /api/services/app/WhistleBlowing/SetStateOfWhistleblowingEntry POST /api/services/app/WhistleBlowing/SetStatutorySettingsOnWhistleblowingEntry POST /api/services/app/WhistleBlowing/UploadCaseFileToWhistleBlowingEntry POST /api/services/app/WhistleBlowing/UploadLegalNoticesForTenant POST /api/services/app/WhistleBlowing/UploadTemplates POST /api/services/app/WhistleBlowing/UploadTenantLogo PUT /api/services/app/Role/Update PUT /api/services/app/Tenant/Update PUT /api/services/app/User/Update
Open service 52.232.26.228:443 · application.ethicom.hu
2026-01-23 12:50
HTTP/1.1 404 Not Found
Content-Length: 21699
Connection: close
Content-Type: text/html
Date: Fri, 23 Jan 2026 12:51:13 GMT
Server: Microsoft-IIS/10.0
Accept-Ranges: bytes
ETag: "1dc8ab33a870dc3"
Last-Modified: Wed, 21 Jan 2026 08:52:10 GMT
Set-Cookie: ARRAffinity=063017b9f3d6658eaab7a162b72b22d24fa386dcc1410d5eb543e9847a3ffb9e;Path=/;HttpOnly;Secure;Domain=application.ethicom.hu
Set-Cookie: ARRAffinitySameSite=063017b9f3d6658eaab7a162b72b22d24fa386dcc1410d5eb543e9847a3ffb9e;Path=/;HttpOnly;SameSite=None;Secure;Domain=application.ethicom.hu
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Powered-By: ASP.NET
Page title: Ethicom
<!DOCTYPE html>
<html lang="en" data-critters-container>
<head><link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
<meta charset="utf-8">
<title>Ethicom</title>
<base href="/">
<meta name="viewport" content="width=device-width, initial-scale=1">
<link rel="icon" type="image/x-icon" href="/favicon_ethicom.ico">
<style>@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7qsDJT9g.woff2) format('woff2');unicode-range:U+0460-052F, U+1C80-1C8A, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7jsDJT9g.woff2) format('woff2');unicode-range:U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7rsDJT9g.woff2) format('woff2');unicode-range:U+1F00-1FFF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7ksDJT9g.woff2) format('woff2');unicode-range:U+0370-0377, U+037A-037F, U+0384-038A, U+038C, U+038E-03A1, U+03A3-03FF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7osDJT9g.woff2) format('woff2');unicode-range:U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7psDJT9g.woff2) format('woff2');unicode-range:U+0100-02BA, U+02BD-02C5, U+02C7-02CC, U+02CE-02D7, U+02DD-02FF, U+0304, U+0308, U+0329, U+1D00-1DBF, U+1E00-1E9F, U+1EF2-1EFF, U+2020, U+20A0-20AB, U+20AD-20C0, U+2113, U+2C60-2C7F, U+A720-A7FF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7nsDI.woff2) format('woff2');unicode-range:U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmhduz8A.woff2) format('woff2');unicode-range:U+0460-052F, U+1C80-1C8A, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwkxduz8A.woff2) format('woff2');unicode-range:U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmxduz8A.woff2) format('woff2');unicode-range:U+1F00-1FFF;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwlBduz8A.woff2) format('woff2');unicode-range:U+0370-0377, U+037A-037F, U+0384-038A, U+038C, U+038E-03A1, U+03A3-03FF;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmBduz8A.woff2) format('woff2');unicode-range:U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v23/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmRduz8A.wof
Open service 52.232.26.228:443 · application.ethicom.hu
2026-01-10 02:25
HTTP/1.1 404 Not Found
Content-Length: 21699
Connection: close
Content-Type: text/html
Date: Sat, 10 Jan 2026 02:26:43 GMT
Server: Microsoft-IIS/10.0
Accept-Ranges: bytes
ETag: "1dbf7e8227358c3"
Last-Modified: Fri, 18 Jul 2025 13:30:32 GMT
Set-Cookie: ARRAffinity=063017b9f3d6658eaab7a162b72b22d24fa386dcc1410d5eb543e9847a3ffb9e;Path=/;HttpOnly;Secure;Domain=application.ethicom.hu
Set-Cookie: ARRAffinitySameSite=063017b9f3d6658eaab7a162b72b22d24fa386dcc1410d5eb543e9847a3ffb9e;Path=/;HttpOnly;SameSite=None;Secure;Domain=application.ethicom.hu
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
X-Powered-By: ASP.NET
Page title: Ethicom
<!DOCTYPE html>
<html lang="en" data-critters-container>
<head><link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
<meta charset="utf-8">
<title>Ethicom</title>
<base href="/">
<meta name="viewport" content="width=device-width, initial-scale=1">
<link rel="icon" type="image/x-icon" href="/favicon_ethicom.ico">
<style>@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7qsDJT9g.woff2) format('woff2');unicode-range:U+0460-052F, U+1C80-1C8A, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7jsDJT9g.woff2) format('woff2');unicode-range:U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7rsDJT9g.woff2) format('woff2');unicode-range:U+1F00-1FFF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7ksDJT9g.woff2) format('woff2');unicode-range:U+0370-0377, U+037A-037F, U+0384-038A, U+038C, U+038E-03A1, U+03A3-03FF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7osDJT9g.woff2) format('woff2');unicode-range:U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7psDJT9g.woff2) format('woff2');unicode-range:U+0100-02BA, U+02BD-02C5, U+02C7-02CC, U+02CE-02D7, U+02DD-02FF, U+0304, U+0308, U+0329, U+1D00-1DBF, U+1E00-1E9F, U+1EF2-1EFF, U+2020, U+20A0-20AB, U+20AD-20C0, U+2113, U+2C60-2C7F, U+A720-A7FF;}@font-face{font-family:'Source Sans Pro';font-style:italic;font-weight:400;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xK1dSBYKcSV-LCoeQqfX1RYOo3qPZ7nsDI.woff2) format('woff2');unicode-range:U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmhduz8A.woff2) format('woff2');unicode-range:U+0460-052F, U+1C80-1C8A, U+20B4, U+2DE0-2DFF, U+A640-A69F, U+FE2E-FE2F;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwkxduz8A.woff2) format('woff2');unicode-range:U+0301, U+0400-045F, U+0490-0491, U+04B0-04B1, U+2116;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmxduz8A.woff2) format('woff2');unicode-range:U+1F00-1FFF;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwlBduz8A.woff2) format('woff2');unicode-range:U+0370-0377, U+037A-037F, U+0384-038A, U+038C, U+038E-03A1, U+03A3-03FF;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmBduz8A.woff2) format('woff2');unicode-range:U+0102-0103, U+0110-0111, U+0128-0129, U+0168-0169, U+01A0-01A1, U+01AF-01B0, U+0300-0301, U+0303-0304, U+0308-0309, U+0323, U+0329, U+1EA0-1EF9, U+20AB;}@font-face{font-family:'Source Sans Pro';font-style:normal;font-weight:300;src:url(https://fonts.gstatic.com/s/sourcesanspro/v22/6xKydSBYKcSV-LCoeQqfX1RYOo3ik4zwmRduz8A.wof