nginx 1.18.0
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-22 04:34
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sun, 22 Dec 2024 04:34:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPA9J4XN4NPVWESCJ9S83GM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPA9J4XN4NPVWESCJ9S83GM X-Runtime: 0.014757 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-12-20 17:05
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Fri, 20 Dec 2024 17:05:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFJGEBP6PD2CKSB75EK240M0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFJGEBP6PD2CKSB75EK240M0 X-Runtime: 0.012143 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-20 05:16
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Fri, 20 Dec 2024 05:16:13 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFH7VV0ZK8ATV4MNR4V9WR6J","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFH7VV0ZK8ATV4MNR4V9WR6J X-Runtime: 0.034425 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-19 03:03
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 19 Dec 2024 03:03:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFEDW640W4TXS9WTB75N8M4W","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFEDW640W4TXS9WTB75N8M4W X-Runtime: 0.015426 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-12-18 15:18
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Wed, 18 Dec 2024 15:18:14 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFD5GS6A2ZWRSW71KB4BH9B7","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFD5GS6A2ZWRSW71KB4BH9B7 X-Runtime: 0.015140 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-14 15:31
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sat, 14 Dec 2024 15:31:31 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2WPBJ7FQH3YV66NBVQMBP6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2WPBJ7FQH3YV66NBVQMBP6 X-Runtime: 0.036363 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-12-14 10:40
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sat, 14 Dec 2024 10:40:13 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2C0ZEVVAXQBSC64CMD7X7J","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2C0ZEVVAXQBSC64CMD7X7J X-Runtime: 0.012622 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-12-12 21:58
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 12 Dec 2024 21:58:19 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEYE17XACSDH1KRNT142CHV0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEYE17XACSDH1KRNT142CHV0 X-Runtime: 0.031756 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-12 21:01
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 12 Dec 2024 21:01:19 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEYARVT467V3F0WVVWDCAJ7T","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEYARVT467V3F0WVVWDCAJ7T X-Runtime: 0.022192 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-03 04:23
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Tue, 03 Dec 2024 04:23:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE5C4AF7W9PF6AECSGH00F35","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE5C4AF7W9PF6AECSGH00F35 X-Runtime: 0.014705 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-12-02 17:11
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 17:11:09 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE45MKQ7BD8BYV7XY6YHQMCH","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE45MKQ7BD8BYV7XY6YHQMCH X-Runtime: 0.034693 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-12-01 00:13
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sun, 01 Dec 2024 00:13:12 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZS00K23STNNFBRMRAWBPB8","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZS00K23STNNFBRMRAWBPB8 X-Runtime: 0.032552 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-11-30 11:22
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sat, 30 Nov 2024 11:22:35 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDYCX0PK0G7HE55G4KWFHBZY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDYCX0PK0G7HE55G4KWFHBZY X-Runtime: 0.032090 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-11-28 14:34
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 28 Nov 2024 14:34:44 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDSK3F7T2W93RREZP8DRSF7A","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDSK3F7T2W93RREZP8DRSF7A X-Runtime: 0.012809 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-11-28 04:50
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 28 Nov 2024 04:50:44 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDRHP5287T1AD0QRR7W3Y83Q","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDRHP5287T1AD0QRR7W3Y83Q X-Runtime: 0.030274 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · www.gitlab.nubelfon.com
2024-11-20 18:39
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Wed, 20 Nov 2024 18:39:15 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD5DXR8FPYK0EJXPAF1GJ97F","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD5DXR8FPYK0EJXPAF1GJ97F X-Runtime: 0.012789 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>
Open service 213.97.78.53:443 · gitlab.nubelfon.com
2024-11-20 18:39
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Wed, 20 Nov 2024 18:39:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.nubelfon.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD5DY802A4EXGP666GQD9548","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD5DY802A4EXGP666GQD9548 X-Runtime: 0.014393 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.nubelfon.com/users/sign_in">redirected</a>.</body></html>