openresty
tcp/443 tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 213.239.210.121:80 · gitlab.hypercarry.net
2024-12-21 11:24
HTTP/1.1 301 Moved Permanently Server: openresty Date: Sat, 21 Dec 2024 11:24:13 GMT Content-Type: text/html Content-Length: 166 Connection: close Location: https://gitlab.hypercarry.net/ Strict-Transport-Security: max-age=63072000;includeSubDomains; preload Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>openresty</center> </body> </html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-21 11:24
HTTP/1.1 302 Found Server: openresty Date: Sat, 21 Dec 2024 11:24:13 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFMFBXCXS1AECENXN979JSP0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFMFBXCXS1AECENXN979JSP0 X-Runtime: 0.043057 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-20 08:01
HTTP/1.1 302 Found Server: openresty Date: Fri, 20 Dec 2024 08:01:26 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFHHBW6MDW8WSYZM1C0XJNRQ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFHHBW6MDW8WSYZM1C0XJNRQ X-Runtime: 0.040396 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-18 08:31
HTTP/1.1 302 Found Server: openresty Date: Wed, 18 Dec 2024 08:31:05 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFCE8R0RQ1GE5V1KFPB1TTRS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFCE8R0RQ1GE5V1KFPB1TTRS X-Runtime: 0.039857 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-16 04:37
HTTP/1.1 302 Found Server: openresty Date: Mon, 16 Dec 2024 04:37:20 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6W39K7FGQ02YTDZ9JZGJA9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6W39K7FGQ02YTDZ9JZGJA9 X-Runtime: 0.015676 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-14 02:23
HTTP/1.1 302 Found Server: openresty Date: Sat, 14 Dec 2024 02:23:49 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1FNCF5F49NW5DZZ4FG46AN","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1FNCF5F49NW5DZZ4FG46AN X-Runtime: 0.021620 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-12 03:56
HTTP/1.1 302 Found Server: openresty Date: Thu, 12 Dec 2024 03:56:10 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEWG51E7DTXSFA9D03B1N37G","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEWG51E7DTXSFA9D03B1N37G X-Runtime: 0.023700 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-12-02 23:06
HTTP/1.1 302 Found Server: openresty Date: Mon, 02 Dec 2024 23:06:10 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE4SZJBPCPPCZB2G0P05WE5B","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE4SZJBPCPPCZB2G0P05WE5B X-Runtime: 0.013678 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-11-30 13:52
HTTP/1.1 302 Found Server: openresty Date: Sat, 30 Nov 2024 13:52:07 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDYNFMB2EJ15TFBMQT63SSPP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDYNFMB2EJ15TFBMQT63SSPP X-Runtime: 0.018748 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-11-28 12:53
HTTP/1.1 302 Found Server: openresty Date: Thu, 28 Nov 2024 12:53:05 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDSDA32D2ND9F1YXCSN5F6M2","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDSDA32D2ND9F1YXCSN5F6M2 X-Runtime: 0.019945 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>
Open service 213.239.210.121:443 · gitlab.hypercarry.net
2024-11-20 16:33
HTTP/1.1 302 Found Server: openresty Date: Wed, 20 Nov 2024 16:34:04 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.hypercarry.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD56RZPQKEE4FGQRS72ZWQXG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD56RZPQKEE4FGQRS72ZWQXG X-Runtime: 0.019324 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin Strict-Transport-Security: max-age=63072000;includeSubDomains; preload X-Served-By: gitlab.hypercarry.net <html><body>You are being <a href="https://gitlab.hypercarry.net/users/sign_in">redirected</a>.</body></html>