nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-22 04:06
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 04:06:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFP8Q2ZHB4N73BTEQ3PME7DD","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFP8Q2ZHB4N73BTEQ3PME7DD X-Runtime: 0.083429 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-20 05:52
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 05:52:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFH9ZQBJS3V605CBQR533GP2","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFH9ZQBJS3V605CBQR533GP2 X-Runtime: 0.050016 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-19 01:07
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 01:07:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFE79Y3CP2WZ4EY8QGPHJVRR","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFE79Y3CP2WZ4EY8QGPHJVRR X-Runtime: 0.032865 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-14 16:03
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 16:03:01 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2YHC0MKRTNY0XHDV05FSDS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2YHC0MKRTNY0XHDV05FSDS X-Runtime: 0.030817 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-13 07:14
HTTP/1.1 302 Found Server: nginx Date: Fri, 13 Dec 2024 07:14:49 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEZDXG40A47MYVSVVD2EQNGG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEZDXG40A47MYVSVVD2EQNGG X-Runtime: 0.032439 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-12 18:30
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 18:30:47 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEY26GHZGT4VPZP7B1P09JYP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEY26GHZGT4VPZP7B1P09JYP X-Runtime: 0.036470 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-12-03 04:59
HTTP/1.1 302 Found Server: nginx Date: Tue, 03 Dec 2024 04:59:16 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE5E63RF0BRTHA5TK01E37DD","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE5E63RF0BRTHA5TK01E37DD X-Runtime: 0.061853 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-11-30 23:43
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 23:43:34 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZQAKVBZ204NG909WNPVZGW","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZQAKVBZ204NG909WNPVZGW X-Runtime: 0.092704 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-11-28 21:45
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 21:45:57 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDTBSSSW10KYQQBW4ATPZ2ZX","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDTBSSSW10KYQQBW4ATPZ2ZX X-Runtime: 0.034926 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-11-26 18:55
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 18:55:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDMX81MZRM6WY5JZMST0HTB3","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDMX81MZRM6WY5JZMST0HTB3 X-Runtime: 0.105052 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>
Open service 146.190.16.46:443 · gitlab.digitecintl.com
2024-11-20 21:48
HTTP/1.1 302 Found Server: nginx Date: Wed, 20 Nov 2024 21:48:02 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.digitecintl.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD5RQW4KJK6BRKDFCBNN7PRH","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD5RQW4KJK6BRKDFCBNN7PRH X-Runtime: 0.037537 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.digitecintl.com/users/sign_in">redirected</a>.</body></html>