nginx 1.18.0
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c7cf176427cf17642ec9f32cdbe2823b1be2823b1be2823b1
Found 2 files trough .DS_Store spidering: /commande /custom
Open service 3.65.238.203:443 · erp-stg.kamioco.com
2026-01-08 23:56
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Thu, 08 Jan 2026 23:56:23 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Vary: Accept-Encoding
Set-Cookie: DOLSESSID_c86213033c35485862fb3693c32891cf=3e35ptsbnle5jjththg855l11o; path=/; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Pragma: no-cache
Cache-Control: Public, must-revalidate
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
Page title: Login @ 15.0.1
<!doctype html>
<html lang="en">
<head>
<meta charset="utf-8">
<meta name="robots" content="noindex">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta name="author" content="Dolibarr Development Team">
<link rel="shortcut icon" type="image/x-icon" href="/theme/dolibarr_256x256_color.png"/>
<link rel="manifest" href="/theme/eldy/manifest.json.php" />
<meta name="theme-color" content="rgb(0,127,255)">
<title>Login @ 15.0.1</title>
<!-- Includes CSS for JQuery (Ajax library) -->
<link rel="stylesheet" type="text/css" href="/includes/jquery/css/base/jquery-ui.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/jnotify/jquery.jnotify-alt.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/select2/dist/css/select2.css?layout=classic&version=15.0.1">
<!-- Includes CSS for font awesome -->
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/all.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/v4-shims.min.css?layout=classic&version=15.0.1">
<!-- Includes CSS for Dolibarr theme -->
<link rel="stylesheet" type="text/css" href="/theme/eldy/style.css.php?lang=en_US&theme=eldy&userid=0&entity=1&layout=classic&version=15.0.1&revision=0">
<!-- Includes JS for JQuery -->
<script src="/includes/jquery/js/jquery.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/js/jquery-ui.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/tablednd/jquery.tablednd.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/jnotify/jquery.jnotify.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/nnnick/chartjs/dist/Chart.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/select2/dist/js/select2.full.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/multiselect/jquery.multi-select.js?layout=classic&version=15.0.1"></script>
<!-- Includes JS of Dolibarr -->
<script src="/core/js/lib_head.js.php?lang=en_US&layout=classic&version=15.0.1"></script>
<!-- Includes JS added by page -->
<script src="/includes/jstz/jstz.min.js?lang=en_US"></script>
<script src="/core/js/dst.js?lang=en_US"></script>
</head>
<!-- BEGIN PHP TEMPLATE LOGIN.TPL.PHP -->
<body class="body bodylogin">
<script>
$(document).ready(function () {
/* Set focus on correct field */
$('#username').focus(); // Warning to use this only on visible element
});
</script>
<div class="login_center center" style="background-size: cover; background-position: center center; background-attachment: fixed; background-repeat: no-repeat; background-image: linear-gradient(rgb(0,127,255,0.3), rgb(240,240,240));">
<div class="login_vertical_align">
<form id="login" name="login" method="post" action="/index.php?mainmenu=home">
<input type="hidden" name="token" value="9a898c6f17a35e076ac1c385865022ac" />
<input type="hidden" name="actionlogin" value="login">
<input type="hidden" name="loginfunction" value="loginfunction" />
<!-- Add fields to store and send local user information. This fields are filled by the core/js/dst.js -->
<input type="hidden" name="tz" id="tz" value="" />
<input type="hidden" name="tz_string" id="tz_string" value="" />
<input type="hidden" name="dst_observed" id="dst_observed" value="" />
<input type="hidden" name="dst_first" id="dst_first" value="" />
<input type="hidden" name="dst_second" id="dst_second" value="" />
<input type="hidden" name="screenwidth" id="screenwidth" value="" />
<input type="hidden" name="screenheight" id="screenheight" value="" />
<input type="hidden" name="dol_hide_topmenu" id="dol_hide_topmenu" value="" />
<input type="hidden" name="dol_hide_leftmenu" id="dol_hide_leftmenu" value="" />
<input type="hidden" name="dol_optimize_smallscreen" id="dol_optimize_smallscreen" value=
Open service 3.65.238.203:443 · erp-stg.kamioco.com
2025-12-30 07:47
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Tue, 30 Dec 2025 07:47:45 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Vary: Accept-Encoding
Set-Cookie: DOLSESSID_c86213033c35485862fb3693c32891cf=qod312c8cc39fppp7ks72rh4lk; path=/; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Pragma: no-cache
Cache-Control: Public, must-revalidate
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
Page title: Login @ 15.0.1
<!doctype html>
<html lang="en">
<head>
<meta charset="utf-8">
<meta name="robots" content="noindex">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta name="author" content="Dolibarr Development Team">
<link rel="shortcut icon" type="image/x-icon" href="/theme/dolibarr_256x256_color.png"/>
<link rel="manifest" href="/theme/eldy/manifest.json.php" />
<meta name="theme-color" content="rgb(0,127,255)">
<title>Login @ 15.0.1</title>
<!-- Includes CSS for JQuery (Ajax library) -->
<link rel="stylesheet" type="text/css" href="/includes/jquery/css/base/jquery-ui.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/jnotify/jquery.jnotify-alt.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/select2/dist/css/select2.css?layout=classic&version=15.0.1">
<!-- Includes CSS for font awesome -->
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/all.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/v4-shims.min.css?layout=classic&version=15.0.1">
<!-- Includes CSS for Dolibarr theme -->
<link rel="stylesheet" type="text/css" href="/theme/eldy/style.css.php?lang=en_US&theme=eldy&userid=0&entity=1&layout=classic&version=15.0.1&revision=0">
<!-- Includes JS for JQuery -->
<script src="/includes/jquery/js/jquery.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/js/jquery-ui.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/tablednd/jquery.tablednd.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/jnotify/jquery.jnotify.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/nnnick/chartjs/dist/Chart.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/select2/dist/js/select2.full.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/multiselect/jquery.multi-select.js?layout=classic&version=15.0.1"></script>
<!-- Includes JS of Dolibarr -->
<script src="/core/js/lib_head.js.php?lang=en_US&layout=classic&version=15.0.1"></script>
<!-- Includes JS added by page -->
<script src="/includes/jstz/jstz.min.js?lang=en_US"></script>
<script src="/core/js/dst.js?lang=en_US"></script>
</head>
<!-- BEGIN PHP TEMPLATE LOGIN.TPL.PHP -->
<body class="body bodylogin">
<script>
$(document).ready(function () {
/* Set focus on correct field */
$('#username').focus(); // Warning to use this only on visible element
});
</script>
<div class="login_center center" style="background-size: cover; background-position: center center; background-attachment: fixed; background-repeat: no-repeat; background-image: linear-gradient(rgb(0,127,255,0.3), rgb(240,240,240));">
<div class="login_vertical_align">
<form id="login" name="login" method="post" action="/index.php?mainmenu=home">
<input type="hidden" name="token" value="9a570a6a8fa2f93359f69e3e11b02802" />
<input type="hidden" name="actionlogin" value="login">
<input type="hidden" name="loginfunction" value="loginfunction" />
<!-- Add fields to store and send local user information. This fields are filled by the core/js/dst.js -->
<input type="hidden" name="tz" id="tz" value="" />
<input type="hidden" name="tz_string" id="tz_string" value="" />
<input type="hidden" name="dst_observed" id="dst_observed" value="" />
<input type="hidden" name="dst_first" id="dst_first" value="" />
<input type="hidden" name="dst_second" id="dst_second" value="" />
<input type="hidden" name="screenwidth" id="screenwidth" value="" />
<input type="hidden" name="screenheight" id="screenheight" value="" />
<input type="hidden" name="dol_hide_topmenu" id="dol_hide_topmenu" value="" />
<input type="hidden" name="dol_hide_leftmenu" id="dol_hide_leftmenu" value="" />
<input type="hidden" name="dol_optimize_smallscreen" id="dol_optimize_smallscreen" value=
Open service 3.65.238.203:443 · erp-stg.kamioco.com
2025-12-22 05:23
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 22 Dec 2025 05:23:11 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Vary: Accept-Encoding
Set-Cookie: DOLSESSID_c86213033c35485862fb3693c32891cf=5vjtjrmh0eukrs9f1i04m0jpa3; path=/; HttpOnly
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Pragma: no-cache
Cache-Control: Public, must-revalidate
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
Page title: Login @ 15.0.1
<!doctype html>
<html lang="en">
<head>
<meta charset="utf-8">
<meta name="robots" content="noindex">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta name="author" content="Dolibarr Development Team">
<link rel="shortcut icon" type="image/x-icon" href="/theme/dolibarr_256x256_color.png"/>
<link rel="manifest" href="/theme/eldy/manifest.json.php" />
<meta name="theme-color" content="rgb(0,127,255)">
<title>Login @ 15.0.1</title>
<!-- Includes CSS for JQuery (Ajax library) -->
<link rel="stylesheet" type="text/css" href="/includes/jquery/css/base/jquery-ui.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/jnotify/jquery.jnotify-alt.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/includes/jquery/plugins/select2/dist/css/select2.css?layout=classic&version=15.0.1">
<!-- Includes CSS for font awesome -->
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/all.min.css?layout=classic&version=15.0.1">
<link rel="stylesheet" type="text/css" href="/theme/common/fontawesome-5/css/v4-shims.min.css?layout=classic&version=15.0.1">
<!-- Includes CSS for Dolibarr theme -->
<link rel="stylesheet" type="text/css" href="/theme/eldy/style.css.php?lang=en_US&theme=eldy&userid=0&entity=1&layout=classic&version=15.0.1&revision=0">
<!-- Includes JS for JQuery -->
<script src="/includes/jquery/js/jquery.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/js/jquery-ui.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/tablednd/jquery.tablednd.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/jnotify/jquery.jnotify.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/nnnick/chartjs/dist/Chart.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/select2/dist/js/select2.full.min.js?layout=classic&version=15.0.1"></script>
<script src="/includes/jquery/plugins/multiselect/jquery.multi-select.js?layout=classic&version=15.0.1"></script>
<!-- Includes JS of Dolibarr -->
<script src="/core/js/lib_head.js.php?lang=en_US&layout=classic&version=15.0.1"></script>
<!-- Includes JS added by page -->
<script src="/includes/jstz/jstz.min.js?lang=en_US"></script>
<script src="/core/js/dst.js?lang=en_US"></script>
</head>
<!-- BEGIN PHP TEMPLATE LOGIN.TPL.PHP -->
<body class="body bodylogin">
<script>
$(document).ready(function () {
/* Set focus on correct field */
$('#username').focus(); // Warning to use this only on visible element
});
</script>
<div class="login_center center" style="background-size: cover; background-position: center center; background-attachment: fixed; background-repeat: no-repeat; background-image: linear-gradient(rgb(0,127,255,0.3), rgb(240,240,240));">
<div class="login_vertical_align">
<form id="login" name="login" method="post" action="/index.php?mainmenu=home">
<input type="hidden" name="token" value="c91f0eeb3134dd244efcfebb12a5bee7" />
<input type="hidden" name="actionlogin" value="login">
<input type="hidden" name="loginfunction" value="loginfunction" />
<!-- Add fields to store and send local user information. This fields are filled by the core/js/dst.js -->
<input type="hidden" name="tz" id="tz" value="" />
<input type="hidden" name="tz_string" id="tz_string" value="" />
<input type="hidden" name="dst_observed" id="dst_observed" value="" />
<input type="hidden" name="dst_first" id="dst_first" value="" />
<input type="hidden" name="dst_second" id="dst_second" value="" />
<input type="hidden" name="screenwidth" id="screenwidth" value="" />
<input type="hidden" name="screenheight" id="screenheight" value="" />
<input type="hidden" name="dol_hide_topmenu" id="dol_hide_topmenu" value="" />
<input type="hidden" name="dol_hide_leftmenu" id="dol_hide_leftmenu" value="" />
<input type="hidden" name="dol_optimize_smallscreen" id="dol_optimize_smallscreen" value=