nginx
tcp/443 tcp/80
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e0707b92ba107b92ba107b92ba107b92ba107b92ba1
Symfony profiler enabled: https://dev.neomieuree.com/_profiler/empty/search/results
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07d3771494d3771494d3771494d3771494d3771494
Symfony profiler enabled: http://dev.neomieuree.com/_profiler/empty/search/results
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65224138362b
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true ignorecase = true precomposeunicode = true [remote "origin"] url = git@github.com:GIBJapan/mieuree-eccube.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "main"] remote = origin merge = refs/heads/main [branch "CRUD_test"] remote = origin merge = refs/heads/CRUD_test [branch "future-yuki"] remote = origin merge = refs/heads/future-yuki [branch "custom_ring_screen"] remote = origin merge = refs/heads/custom_ring_screen [branch "future-yuki-0108"] remote = origin merge = refs/heads/future-yuki-0108 [branch "future-yuki-0304"] remote = origin merge = refs/heads/future-yuki-0304 [user] email = choi-hansol@gibjapan.com name = hansol
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65224138362b
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true ignorecase = true precomposeunicode = true [remote "origin"] url = git@github.com:GIBJapan/mieuree-eccube.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "main"] remote = origin merge = refs/heads/main [branch "CRUD_test"] remote = origin merge = refs/heads/CRUD_test [branch "future-yuki"] remote = origin merge = refs/heads/future-yuki [branch "custom_ring_screen"] remote = origin merge = refs/heads/custom_ring_screen [branch "future-yuki-0108"] remote = origin merge = refs/heads/future-yuki-0108 [branch "future-yuki-0304"] remote = origin merge = refs/heads/future-yuki-0304 [user] email = choi-hansol@gibjapan.com name = hansol
Open service 162.43.120.70:80 · dev.neomieuree.com
2024-09-25 08:21
HTTP/1.1 401 Unauthorized Server: nginx Date: Wed, 25 Sep 2024 08:21:44 GMT Content-Type: text/html Content-Length: 2784 Connection: close WWW-Authenticate: Basic realm="Basic Auth" Last-Modified: Fri, 01 Apr 2022 02:48:27 GMT ETag: "ae0-5db8ed0256f6d" Page title: 401 Unauthorized <!DOCTYPE html> <html lang="ja"> <head> <meta charset="EUC-JP" /> <title>401 Unauthorized</title> <meta name="copyright" content="Copyright XSERVER Inc."> <meta name="robots" content="INDEX,FOLLOW" /> <meta name="viewport" content="width=device-width,initial-scale=1.0,minimum-scale=1.0"> <style type="text/css"> * { margin: 0; padding: 0; } img { border: 0; } ul { padding-left: 2em; } html { overflow-y: scroll; background: #3b79b7; } body { font-family: "�ᥤ�ꥪ", Meiryo, "�ͣ� �Х����å�", "MS PGothic", "�ҥ饮�γѥ� Pro W3", "Hiragino Kaku Gothic Pro", sans-serif; margin: 0; line-height: 1.4; font-size: 75%; text-align: center; color: white; } h1 { font-size: 24px; font-weight: bold; } h1 { font-weight: bold; line-height: 1; padding-bottom: 20px; font-family: Helvetica, sans-serif; } h2 { text-align: center; font-weight: bold; font-size: 27px; } p { text-align: center; font-size: 14px; margin: 0; padding: 0; color: white; } .explain { border-top: 1px solid #fff; border-bottom: 1px solid #fff; line-height: 1.5; margin: 30px auto; padding: 17px; } #cause { text-align: left; } #cause li { color: #666; } h3 { letter-spacing: 1px; font-weight: bold; padding: 0; } #white_box { margin: 15px auto 0; background-color: white; } /* ==================== ���ޡ��ȥե��� ======================= */ @media only screen and (min-width: 0) and (max-width: 767px) { #base { padding: 30px 10px; } h1 { font-size: 26px; } h1 span { font-size: 60px; } h2 { font-size: 16px; } .explain { font-size: 14px; } h3 { margin-top: 45px; font-size: 16px; } #cause { padding: 20px; font-size: 12px; } } /* ==================== �ѥ����������֥��å� ======================= */ @media only screen and (min-width: 768px) { #base { margin-top: 80px; } h1 { font-size: 50px; } h1 span { font-size: 110px; } .explain { font-size: 16px; width: 660px; } #white_box { width: 680px; margin-bottom: 50px; } h3 { font-size: 20px; margin-top: 80px; } #cause { padding: 30px; font-size: 14px; } } </style> </head> <body> <div id="base"> <h1><span>401</span><br /> Unauthorized</h1> <h2>�����������褦�Ȥ����ڡ�����ɽ���Ǥ��ޤ����Ǥ�����</h2> <p class="explain">���Υ��顼�ϡ��ڡ��������������Τ˥ѥ�������¤ʤɤ�ǧ�ڤ�ɬ�פ�����<br /> ������ǧ�ڤ����ʤ��ä����Ȥ���̣���ޤ���</p> <h3>�ʲ��Τ褦�ʸ������ͤ������ޤ���</h3> <div id="white_box"> <div id="cause"> <ul> <li>ǧ�ڤΤ����Υ桼����̾�ȥѥ���ɤ��ְ��äƤ��롣</li> </ul> </div> </div> <!--//base--></div> </body> </html>
Open service 162.43.120.70:443 · dev.neomieuree.com
2024-09-25 08:21
HTTP/1.1 401 Unauthorized Server: nginx Date: Wed, 25 Sep 2024 08:21:48 GMT Content-Type: text/html Content-Length: 2784 Connection: close WWW-Authenticate: Basic realm="Basic Auth" Last-Modified: Fri, 01 Apr 2022 02:48:27 GMT ETag: "ae0-5db8ed0256f6d" Page title: 401 Unauthorized <!DOCTYPE html> <html lang="ja"> <head> <meta charset="EUC-JP" /> <title>401 Unauthorized</title> <meta name="copyright" content="Copyright XSERVER Inc."> <meta name="robots" content="INDEX,FOLLOW" /> <meta name="viewport" content="width=device-width,initial-scale=1.0,minimum-scale=1.0"> <style type="text/css"> * { margin: 0; padding: 0; } img { border: 0; } ul { padding-left: 2em; } html { overflow-y: scroll; background: #3b79b7; } body { font-family: "�ᥤ�ꥪ", Meiryo, "�ͣ� �Х����å�", "MS PGothic", "�ҥ饮�γѥ� Pro W3", "Hiragino Kaku Gothic Pro", sans-serif; margin: 0; line-height: 1.4; font-size: 75%; text-align: center; color: white; } h1 { font-size: 24px; font-weight: bold; } h1 { font-weight: bold; line-height: 1; padding-bottom: 20px; font-family: Helvetica, sans-serif; } h2 { text-align: center; font-weight: bold; font-size: 27px; } p { text-align: center; font-size: 14px; margin: 0; padding: 0; color: white; } .explain { border-top: 1px solid #fff; border-bottom: 1px solid #fff; line-height: 1.5; margin: 30px auto; padding: 17px; } #cause { text-align: left; } #cause li { color: #666; } h3 { letter-spacing: 1px; font-weight: bold; padding: 0; } #white_box { margin: 15px auto 0; background-color: white; } /* ==================== ���ޡ��ȥե��� ======================= */ @media only screen and (min-width: 0) and (max-width: 767px) { #base { padding: 30px 10px; } h1 { font-size: 26px; } h1 span { font-size: 60px; } h2 { font-size: 16px; } .explain { font-size: 14px; } h3 { margin-top: 45px; font-size: 16px; } #cause { padding: 20px; font-size: 12px; } } /* ==================== �ѥ����������֥��å� ======================= */ @media only screen and (min-width: 768px) { #base { margin-top: 80px; } h1 { font-size: 50px; } h1 span { font-size: 110px; } .explain { font-size: 16px; width: 660px; } #white_box { width: 680px; margin-bottom: 50px; } h3 { font-size: 20px; margin-top: 80px; } #cause { padding: 30px; font-size: 14px; } } </style> </head> <body> <div id="base"> <h1><span>401</span><br /> Unauthorized</h1> <h2>�����������褦�Ȥ����ڡ�����ɽ���Ǥ��ޤ����Ǥ�����</h2> <p class="explain">���Υ��顼�ϡ��ڡ��������������Τ˥ѥ�������¤ʤɤ�ǧ�ڤ�ɬ�פ�����<br /> ������ǧ�ڤ����ʤ��ä����Ȥ���̣���ޤ���</p> <h3>�ʲ��Τ褦�ʸ������ͤ������ޤ���</h3> <div id="white_box"> <div id="cause"> <ul> <li>ǧ�ڤΤ����Υ桼����̾�ȥѥ���ɤ��ְ��äƤ��롣</li> </ul> </div> </div> <!--//base--></div> </body> </html>