nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 62.63.242.24:443 · git.wingmanit.se
2024-12-22 04:49
HTTP/1.1 302 Found Date: Sun, 22 Dec 2024 04:49:58 GMT Server: nginx Content-Type: text/html; charset=utf-8 Content-Length: 104 Cache-Control: no-cache Content-Security-Policy: Location: https://git.wingmanit.se/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPB6QACFVNYP0Y440P2VR5M","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPB6QACFVNYP0Y440P2VR5M X-Runtime: 0.096660 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Connection: close <html><body>You are being <a href="https://git.wingmanit.se/users/sign_in">redirected</a>.</body></html>
Open service 62.63.242.24:443 · git.wingmanit.se
2024-12-20 03:22
HTTP/1.1 302 Found Date: Fri, 20 Dec 2024 03:22:23 GMT Server: nginx Content-Type: text/html; charset=utf-8 Content-Length: 104 Cache-Control: no-cache Content-Security-Policy: Location: https://git.wingmanit.se/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFH1CXYDM0DPMG37G40ED88A","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFH1CXYDM0DPMG37G40ED88A X-Runtime: 0.020066 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Connection: close <html><body>You are being <a href="https://git.wingmanit.se/users/sign_in">redirected</a>.</body></html>
Open service 62.63.242.24:443 · git.wingmanit.se
2024-12-14 00:48
HTTP/1.1 302 Found Date: Sat, 14 Dec 2024 00:48:12 GMT Server: nginx Content-Type: text/html; charset=utf-8 Content-Length: 104 Cache-Control: no-cache Content-Security-Policy: Location: https://git.wingmanit.se/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1A69MKDPBA5196SGWHKHCV","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1A69MKDPBA5196SGWHKHCV X-Runtime: 0.093205 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Connection: close <html><body>You are being <a href="https://git.wingmanit.se/users/sign_in">redirected</a>.</body></html>