nginx 1.18.0
tcp/443 tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-12-22 01:17
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Sun, 22 Dec 2024 01:17:56 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNZ2FKXPMNWAB924GN4R0H2","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNZ2FKXPMNWAB924GN4R0H2 X-Runtime: 0.016969 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-12-03 01:53
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Tue, 03 Dec 2024 01:53:47 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE53JFCHXPGSNVCJ3JX4AA04","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE53JFCHXPGSNVCJ3JX4AA04 X-Runtime: 0.015709 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-11-30 16:23
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Sat, 30 Nov 2024 16:23:34 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDYY4YCGB5K9TJEYTN2NJHJY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDYY4YCGB5K9TJEYTN2NJHJY X-Runtime: 0.017532 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-11-28 17:16
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Thu, 28 Nov 2024 17:16:18 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDSWC2B7NZNK93HSK9AHQ6YB","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDSWC2B7NZNK93HSK9AHQ6YB X-Runtime: 0.017289 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-11-26 17:28
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Tue, 26 Nov 2024 17:28:10 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDMR8BQ2125YCX76TTCGCMJ0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDMR8BQ2125YCX76TTCGCMJ0 X-Runtime: 0.017109 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:80 · gitlab.technaxis.com
2024-11-20 12:21
HTTP/1.1 301 Moved Permanently Server: nginx/1.18.0 Date: Wed, 20 Nov 2024 12:21:28 GMT Content-Type: text/html Content-Length: 169 Connection: close Location: https://gitlab.technaxis.com/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.18.0</center> </body> </html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-11-20 12:21
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Wed, 20 Nov 2024 12:21:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD4RAJFH5PQV2XW66F9XG66Z","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD4RAJFH5PQV2XW66F9XG66Z X-Runtime: 0.017105 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>
Open service 84.201.173.166:443 · gitlab.technaxis.com
2024-11-20 11:04
HTTP/1.1 302 Found Server: nginx/1.18.0 Date: Wed, 20 Nov 2024 11:04:43 GMT Content-Type: text/html; charset=utf-8 Content-Length: 108 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.technaxis.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD4KXXX8634JXGNW4VHDQ078","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD4KXXX8634JXGNW4VHDQ078 X-Runtime: 0.016947 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.technaxis.com/users/sign_in">redirected</a>.</body></html>