Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549eb5cdc9b7fb4ef8fec6209aa4aae0ddb889cb685
Public Swagger UI/API detected at path: /swagger/index.html - sample paths: GET /WeatherForecast GET /api/Payment/Line-Type GET /api/Payment/check-attachment GET /api/Payment/download-attachment GET /api/Payment/request-types1 GET /api/instantReceipt/getInstantReceipts GET /api/manualReceipt/AddressBookVendor GET /api/manualReceipt/Persons GET /api/manualReceipt/SearchAddressBookVendor GET /api/manualReceipt/getManualReceipts GET /api/manualReceipt/getManualReceiptsSearch GET /api/manualReceipt/getManualReceiptsTextSearch GET /api/receipt/AdminReceiptType GET /api/receipt/PendingReceipts GET /api/receipt/SearchForAllReceipt GET /api/receipt/SearchForMyReceipt GET /api/receipt/receipt GET /api/receipt/receipt-types-names GET /api/receipt/receipt-types1 GET /api/receipt/receipt-types11 GET /api/receipt/receiptDisplay GET /api/receipt/receiptPrint GET /api/receipt/receiptPrint1 GET /api/receiptPopup/receiptPrint GET /api/reports/ReportReceipt GET /api/user/Account GET /api/user/AccountSearch GET /api/user/AddressBook GET /api/user/AddressBookVendor GET /api/user/CodeLocation GET /api/user/CodeLocation1 GET /api/user/GetEmployeeInfo GET /api/user/Persons GET /api/user/PersonsAdmin GET /api/user/UserCAI GET /api/user/UserValue POST /api/Payment/updateAdminUser POST /api/instantReceipt/getOtp POST /api/instantReceipt/instantReceipt POST /api/manualReceipt/ManualReceipts POST /api/receipt/GetAdminChanges POST /api/receipt/GetReceiptTypeChanges POST /api/receipt/ProcessReceipt POST /api/receipt/ProcessReceipt1 POST /api/receipt/ProcessReceiptNew POST /api/receipt/receiptReviewed POST /api/receipt/repostJDE POST /api/receipt/send-receipt-email POST /api/receipt/updateAdminUser POST /api/receipt/updateReceiptTypeAdmin POST /api/receipt/updateReceiptsPopup POST /api/receipt/updateReview POST /api/user/manage
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549eb5cdc9b7fb4ef8fec6209aa4aae0ddb989e81f3
Public Swagger UI/API detected at path: /swagger/index.html - sample paths: GET /WeatherForecast GET /api/Payment/Line-Type GET /api/Payment/check-attachment GET /api/Payment/download-attachment GET /api/Payment/request-types1 GET /api/instantReceipt/getInstantReceipts GET /api/manualReceipt/AddressBookVendor GET /api/manualReceipt/Persons GET /api/manualReceipt/SearchAddressBookVendor GET /api/manualReceipt/getManualReceipts GET /api/manualReceipt/getManualReceiptsSearch GET /api/manualReceipt/getManualReceiptsTextSearch GET /api/receipt/AdminReceiptType GET /api/receipt/PendingReceipts GET /api/receipt/SearchForAllReceipt GET /api/receipt/SearchForMyReceipt GET /api/receipt/receipt GET /api/receipt/receipt-types-names GET /api/receipt/receipt-types1 GET /api/receipt/receipt-types11 GET /api/receipt/receiptDisplay GET /api/receipt/receiptPrint GET /api/receipt/receiptPrint1 GET /api/receiptPopup/receiptPrint GET /api/reports/ReportReceipt GET /api/user/Account GET /api/user/AccountSearch GET /api/user/AddressBook GET /api/user/AddressBookVendor GET /api/user/CodeLocation GET /api/user/CodeLocation1 GET /api/user/Persons GET /api/user/PersonsAdmin GET /api/user/UserCAI GET /api/user/UserValue POST /api/Payment/updateAdminUser POST /api/instantReceipt/getOtp POST /api/instantReceipt/instantReceipt POST /api/manualReceipt/ManualReceipts POST /api/receipt/GetAdminChanges POST /api/receipt/GetReceiptTypeChanges POST /api/receipt/ProcessReceipt POST /api/receipt/ProcessReceipt1 POST /api/receipt/ProcessReceiptNew POST /api/receipt/receiptReviewed POST /api/receipt/repostJDE POST /api/receipt/send-receipt-email POST /api/receipt/updateAdminUser POST /api/receipt/updateReceiptTypeAdmin POST /api/receipt/updateReceiptsPopup POST /api/receipt/updateReview POST /api/user/manage
Open service 13.95.93.152:443 · erecpt-api-dev.azure.chevron.com
2026-01-23 06:45
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 06:46:06 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;Secure;Domain=erecpt-api-dev.azure.chevron.com Set-Cookie: ARRAffinitySameSite=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;SameSite=None;Secure;Domain=erecpt-api-dev.azure.chevron.com X-Powered-By: ASP.NET
Open service 13.95.93.152:443 · erecpt-api-dev.azure.chevron.com
2026-01-09 03:47
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 09 Jan 2026 03:48:49 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;Secure;Domain=erecpt-api-dev.azure.chevron.com Set-Cookie: ARRAffinitySameSite=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;SameSite=None;Secure;Domain=erecpt-api-dev.azure.chevron.com X-Powered-By: ASP.NET
Open service 13.95.93.152:443 · erecpt-api-dev.azure.chevron.com
2026-01-02 09:20
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 02 Jan 2026 09:20:16 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;Secure;Domain=erecpt-api-dev.azure.chevron.com Set-Cookie: ARRAffinitySameSite=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;SameSite=None;Secure;Domain=erecpt-api-dev.azure.chevron.com X-Powered-By: ASP.NET
Open service 13.95.93.152:443 · erecpt-api-dev.azure.chevron.com
2025-12-23 01:45
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Tue, 23 Dec 2025 01:45:22 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;Secure;Domain=erecpt-api-dev.azure.chevron.com Set-Cookie: ARRAffinitySameSite=2efc4cef18906c518669fd834527fa5e0b4a042ea508d746eee1acb276a24425;Path=/;HttpOnly;SameSite=None;Secure;Domain=erecpt-api-dev.azure.chevron.com X-Powered-By: ASP.NET