nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-22 03:48
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 03:48:29 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFP7P5634YDVYHHKBTDGZFH6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFP7P5634YDVYHHKBTDGZFH6 X-Runtime: 0.034568 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-20 06:23
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 06:23:52 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFHBS71M2XMNJ7E6XPCH1907","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFHBS71M2XMNJ7E6XPCH1907 X-Runtime: 0.152797 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-18 23:57
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 23:57:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFE3945MAEFFM7Q8JVMXBMC4","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFE3945MAEFFM7Q8JVMXBMC4 X-Runtime: 0.037405 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-14 14:52
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 14:52:22 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2TG0BZ2GSC2K18339A5DE9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2TG0BZ2GSC2K18339A5DE9 X-Runtime: 0.155957 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-12 23:44
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 23:44:59 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEYM5TMP9QYENBRWMPMWCVMQ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEYM5TMP9QYENBRWMPMWCVMQ X-Runtime: 0.025494 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-12-03 05:28
HTTP/1.1 302 Found Server: nginx Date: Tue, 03 Dec 2024 05:29:00 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE5FWH94EP3AN5RTF6235RN7","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE5FWH94EP3AN5RTF6235RN7 X-Runtime: 0.102085 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-11-30 21:53
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 21:53:41 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZH1CTANGEWC6H4FBMJ5VXW","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZH1CTANGEWC6H4FBMJ5VXW X-Runtime: 0.040338 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-11-28 17:50
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 17:50:56 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDSYBEX07E7ZH015PS0B90CS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDSYBEX07E7ZH015PS0B90CS X-Runtime: 0.200690 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-11-26 16:23
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 16:23:09 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDMMH9XWA5STWD0RBTQANJJM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDMMH9XWA5STWD0RBTQANJJM X-Runtime: 0.092965 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>
Open service 23.88.111.164:443 · collabora.amethyst-soft.com
2024-11-20 08:48
HTTP/1.1 302 Found Server: nginx Date: Wed, 20 Nov 2024 08:49:17 GMT Content-Type: text/html; charset=utf-8 Content-Length: 91 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://amethyst-soft.com Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD4C5Y4Z1TYTJW6GA52T6ZP8","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD4C5Y4Z1TYTJW6GA52T6ZP8 X-Runtime: 0.097085 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://amethyst-soft.com">redirected</a>.</body></html>