nginx 1.18.0
tcp/443 tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-22 04:58
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sun, 22 Dec 2024 04:58:16 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPBNXV3EQNKDWFABXAGSHD8","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPBNXV3EQNKDWFABXAGSHD8 X-Runtime: 0.043931 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-20 06:41
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Fri, 20 Dec 2024 06:41:58 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFHCTC4AWERZ362JJWBTV7KY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFHCTC4AWERZ362JJWBTV7KY X-Runtime: 0.105288 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-18 23:30
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Wed, 18 Dec 2024 23:31:09 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFE1RSNDY5MRB14X9979RN18","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFE1RSNDY5MRB14X9979RN18 X-Runtime: 0.044057 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-14 05:01
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sat, 14 Dec 2024 05:01:35 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1RP8CNZ5REHJFXHWSW5DKG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1RP8CNZ5REHJFXHWSW5DKG X-Runtime: 0.045463 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-12 11:12
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 12 Dec 2024 11:12:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEX94RCM86X938R2S1V8X4CE","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEX94RCM86X938R2S1V8X4CE X-Runtime: 0.019105 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-02 17:54
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 17:54:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE485MDP6C0VA6DMHN4EBEB1","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE485MDP6C0VA6DMHN4EBEB1 X-Runtime: 0.014953 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-12-02 14:21
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 14:21:45 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE3VZARG3CA4VH1TXAVR25D2","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE3VZARG3CA4VH1TXAVR25D2 X-Runtime: 0.041875 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:80 · gitlab.synweb.ru
2024-12-02 14:21
HTTP/1.1 301 Moved Permanently Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 14:21:36 GMT Content-Type: text/html Content-Length: 178 Connection: close Location: https://gitlab.synweb.ru/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.18.0 (Ubuntu)</center> </body> </html>
Open service 2a03:6f01:1:2::3548:80 · gitlab.synweb.ru
2024-12-02 14:21
HTTP/1.1 301 Moved Permanently Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 14:21:35 GMT Content-Type: text/html Content-Length: 178 Connection: close Location: https://gitlab.synweb.ru/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.18.0 (Ubuntu)</center> </body> </html>
Open service 2a03:6f01:1:2::3548:443 · gitlab.synweb.ru
2024-12-02 14:21
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Mon, 02 Dec 2024 14:21:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE3VZ296G24031BRA1W2V925","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE3VZ296G24031BRA1W2V925 X-Runtime: 0.016901 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-11-30 13:06
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Sat, 30 Nov 2024 13:06:20 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDYJVS6C4513AYF8NEHTGTAT","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDYJVS6C4513AYF8NEHTGTAT X-Runtime: 0.023135 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-11-28 10:14
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 28 Nov 2024 10:14:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDS47WRKBTDRV6HDCPFA1Q07","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDS47WRKBTDRV6HDCPFA1Q07 X-Runtime: 0.041166 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-11-26 22:48
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Tue, 26 Nov 2024 22:48:34 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDNAK0K3A1YQ6YDH6C5W561R","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDNAK0K3A1YQ6YDH6C5W561R X-Runtime: 0.023046 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>
Open service 176.57.213.150:443 · gitlab.synweb.ru
2024-11-21 01:55
HTTP/1.1 302 Found Server: nginx/1.18.0 (Ubuntu) Date: Thu, 21 Nov 2024 01:55:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.synweb.ru/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD66X699GKTQT2AV8C2S8694","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD66X699GKTQT2AV8C2S8694 X-Runtime: 0.027152 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.synweb.ru/users/sign_in">redirected</a>.</body></html>