nginx
tcp/443
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07432da8bf432da8bf432da8bf432da8bf432da8bf
Symfony profiler enabled: https://gemeinwohlkasse.org/_profiler/empty/search/results
Open service 2a05:f480:1400:2095:5400:4ff:fed5:48c1:443 · autodiscover.gemeinwohlkasse.org
2024-10-20 12:25
HTTP/1.1 200 OK Server: nginx Date: Sun, 20 Oct 2024 12:25:15 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=c4116d1064e21e87160e78cab5d80b69; path=/; secure; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Strict-Transport-Security: max-age=15768000; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Robots-Tag: none X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: strict-origin
Open service 136.244.96.166:443 · autodiscover.gemeinwohlkasse.org
2024-10-20 12:25
HTTP/1.1 200 OK Server: nginx Date: Sun, 20 Oct 2024 12:25:16 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=75164b690ca70b8ee92d766a3520031d; path=/; secure; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Strict-Transport-Security: max-age=15768000; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Robots-Tag: none X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: strict-origin
Open service 2a05:f480:1400:2095:5400:4ff:fed5:48c1:443 · autoconfig.gemeinwohlkasse.org
2024-10-20 12:25
HTTP/1.1 200 OK Server: nginx Date: Sun, 20 Oct 2024 12:25:14 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=937bf9f0a6850a66b784a315f7f59458; path=/; secure; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Strict-Transport-Security: max-age=15768000; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Robots-Tag: none X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: strict-origin
Open service 136.244.96.166:443 · autoconfig.gemeinwohlkasse.org
2024-10-20 12:25
HTTP/1.1 200 OK Server: nginx Date: Sun, 20 Oct 2024 12:25:13 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Set-Cookie: PHPSESSID=d2ab0f4067bb2b04fefcc39701ff7685; path=/; secure; HttpOnly Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Strict-Transport-Security: max-age=15768000; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Robots-Tag: none X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Permitted-Cross-Domain-Policies: none Referrer-Policy: strict-origin