The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07db1ae4e0db1ae4e0db1ae4e0db1ae4e0db1ae4e0
Symfony profiler enabled: https://dk.pimcore.kinto.services/_profiler/empty/search/results
Open service 2620:1ec:bdf::45:443 · dk.pimcore.kinto.services
2026-01-22 19:24
HTTP/1.1 302 Found
Date: Thu, 22 Jan 2026 19:24:15 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Location: /admin
Set-Cookie: sf_redirect=%7B%22token%22%3A%229259ed%22%2C%22route%22%3A%22document_600%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22Ateles%5C%5CRestBundle%5C%5CController%5C%5CContentController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fvar%5C%2Fwww%5C%2Fhtml%5C%2Fsrc%5C%2FAteles%5C%2FRestBundle%5C%2FController%5C%2FContentController.php%22%2C%22line%22%3A14%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D; path=/; httponly; samesite=lax
X-Powered-By: PHP/8.3.27
X-Powered-By: pimcore
X-Debug-Token: 9259ed
X-Debug-Token-Link: http://kn-prod-dk-cms-app.azurewebsites.net/_profiler/9259ed
set-cookie: ASLBSA=00035723489b0a78a4490a7dde4621cc6977f7c92e2d575c63d3efae58211146e127; Path=/; Secure; HttpOnly;
set-cookie: ASLBSACORS=00035723489b0a78a4490a7dde4621cc6977f7c92e2d575c63d3efae58211146e127; SameSite=none; Path=/; Secure; HttpOnly;
x-azure-ref: 20260122T192415Z-15c4449dbb84w7t4hC1YTOum0w0000000cbg00000000dk9h
X-Cache: CONFIG_NOCACHE
Page title: Redirecting to /admin
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='/admin'" />
<title>Redirecting to /admin</title>
</head>
<body>
Redirecting to <a href="/admin">/admin</a>.
</body>
</html>
Open service 2620:1ec:bdf::45:443 · dk.pimcore.kinto.services
2026-01-10 01:38
HTTP/1.1 302 Found
Date: Sat, 10 Jan 2026 01:38:20 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Location: /admin
Set-Cookie: sf_redirect=%7B%22token%22%3A%229d1220%22%2C%22route%22%3A%22document_600%22%2C%22method%22%3A%22GET%22%2C%22controller%22%3A%7B%22class%22%3A%22Ateles%5C%5CRestBundle%5C%5CController%5C%5CContentController%22%2C%22method%22%3A%22indexAction%22%2C%22file%22%3A%22%5C%2Fvar%5C%2Fwww%5C%2Fhtml%5C%2Fsrc%5C%2FAteles%5C%2FRestBundle%5C%2FController%5C%2FContentController.php%22%2C%22line%22%3A14%7D%2C%22status_code%22%3A302%2C%22status_text%22%3A%22Found%22%7D; path=/; httponly; samesite=lax
X-Powered-By: PHP/8.3.27
X-Powered-By: pimcore
X-Debug-Token: 9d1220
X-Debug-Token-Link: http://kn-prod-dk-cms-app.azurewebsites.net/_profiler/9d1220
set-cookie: ASLBSA=00035723489b0a78a4490a7dde4621cc6977f7c92e2d575c63d3efae58211146e127; Path=/; Secure; HttpOnly;
set-cookie: ASLBSACORS=00035723489b0a78a4490a7dde4621cc6977f7c92e2d575c63d3efae58211146e127; SameSite=none; Path=/; Secure; HttpOnly;
x-azure-ref: 20260110T013820Z-155869f5c8bh58zqhC1AMSu8cn0000000gc00000000061w3
X-Cache: CONFIG_NOCACHE
Page title: Redirecting to /admin
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='/admin'" />
<title>Redirecting to /admin</title>
</head>
<body>
Redirecting to <a href="/admin">/admin</a>.
</body>
</html>