Varnish
tcp/80
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652280304f5c
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab.com/IndieLevelStudio/sapiencia/monitor-v2.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "main"] remote = origin merge = refs/heads/main
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c026392ab026392abff42a23bee6027481ad3e90a8dce8cda
Found 7 files trough .DS_Store spidering: /cert.crt /Dockerfile /HTTPSKeys /ils_poker_server.64 /ils_poker_server.pck /index.html /privkey.key
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c0215adfc0215adfccbf61fa12f9aa6fd1a5c7a584b503cbe
Found 4 files trough .DS_Store spidering: /50x.html /index.html /indielevelstudio.dev /sapiencia.indielevelstudio.dev
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c1a5d9b0f1a5d9b0f354ed6c7a28befeb4670b2df4670b2df
Found 3 files trough .DS_Store spidering: /fico /index.html /logo.svg
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c2eda814e2eda814eed26652f838f82834279ae2fb915dda1
Found 6 files trough .DS_Store spidering: /50x.html /games.indielevelstudio.dev /index.html /indielevelstudio.dev /sapiencia-api.indielevelstudio.dev /sapiencia.indielevelstudio.dev
Open service 199.36.158.100:443 · mesa-soporte-test.indielevelstudio.dev
2024-06-10 14:16
HTTP/1.1 200 OK Connection: close Content-Length: 1578 Cache-Control: max-age=3600 Content-Type: text/html; charset=utf-8 Etag: "3ce16452f26197abd60e7aaa8504298bef29557f7ae311d50bd2681d2351b01e" Last-Modified: Thu, 06 Oct 2022 20:45:46 GMT Strict-Transport-Security: max-age=31556926 Accept-Ranges: bytes Date: Mon, 10 Jun 2024 14:16:21 GMT X-Served-By: cache-lga21970-LGA X-Cache: HIT X-Cache-Hits: 1 X-Timer: S1718028981.376701,VS0,VE1 Vary: x-fh-requested-host, accept-encoding alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 Page title: mesa-tecnica-front <!DOCTYPE html> <html lang=""> <head> <meta charset="utf-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width,initial-scale=1.0"> <!--[if IE]><link rel="icon" href="/favicon.ico"><![endif]--> <title>mesa-tecnica-front</title> <script src="https://kit.fontawesome.com/143c407b92.js" crossorigin="anonymous"></script> <script defer src="/js/chunk-vendors.js"></script><script defer src="/js/app.js"></script><link rel="icon" type="image/svg+xml" href="/img/icons/favicon.svg"><link rel="icon" type="image/png" sizes="32x32" href="/img/icons/favicon-32x32.png"><link rel="icon" type="image/png" sizes="16x16" href="/img/icons/favicon-16x16.png"><link rel="manifest" href="/manifest.json"><meta name="theme-color" content="#4DBA87"><meta name="apple-mobile-web-app-capable" content="no"><meta name="apple-mobile-web-app-status-bar-style" content="default"><meta name="apple-mobile-web-app-title" content="mesa-tecnica-front"><link rel="apple-touch-icon" href="/img/icons/apple-touch-icon-152x152.png"><link rel="mask-icon" href="/img/icons/safari-pinned-tab.svg" color="#4DBA87"><meta name="msapplication-TileImage" content="/img/icons/msapplication-icon-144x144.png"><meta name="msapplication-TileColor" content="#000000"></head> <body> <noscript> <strong>We're sorry but mesa-tecnica-front doesn't work properly without JavaScript enabled. Please enable it to continue.</strong> </noscript> <div id="app"></div> <!-- built files will be auto injected --> </body> </html>
Open service 199.36.158.100:80 · mesa-soporte-test.indielevelstudio.dev
2024-06-10 14:16
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://mesa-soporte-test.indielevelstudio.dev/ Accept-Ranges: bytes Date: Mon, 10 Jun 2024 14:16:21 GMT X-Served-By: cache-chi-klot8100083-CHI X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1718028981.037883,VS0,VE0 alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400
Open service 199.36.158.100:443 · mindlight.indielevelstudio.dev
2024-05-28 09:45
HTTP/1.1 404 Not Found Connection: close Content-Length: 10601 Cache-Control: max-age=0 Content-Type: text/html; charset=utf-8 Strict-Transport-Security: max-age=31556926 Accept-Ranges: bytes Date: Tue, 28 May 2024 09:45:05 GMT X-Served-By: cache-lga21924-LGA X-Cache: HIT X-Cache-Hits: 1 X-Timer: S1716889506.609394,VS0,VE1 Vary: x-fh-requested-host, accept-encoding alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 Page title: Site Not Found <!doctype html> <html> <head> <title>Site Not Found</title> <link href='https://fonts.googleapis.com/css?family=Roboto' rel='stylesheet' type='text/css'> <meta name="viewport" content="width=device-width, initial-scale=1"> <style> body { margin: 0 auto; margin-top: 48px; max-width: 616px; padding: 0 16px; font-family: 'Roboto', 'Helvetica Neue', sans-serif; font-size: 16px; line-height: 24px; color: rgba(0,0,0,0.87); } h1, h2, h3 { font-family: 'Roboto', 'Helvetica Neue', sans-serif; font-weight: 300; } h1 { margin: 24px 0 16px 0; padding: 0 0 16px 0; border-bottom: 1px solid rgba(0,0,0,0.1); font-size: 32px; line-height: 36px; } h2 { margin: 24px 0 16px 0; padding: 0; font-size: 20px; line-height: 32px; color: rgba(0,0,0,0.54); } p { margin: 0; margin-bottom: 16px; } ol { margin: 0; } ol li { margin: 0; line-height: 24px; padding-left: 12px; } a { color: #039BE5; text-decoration: underline; } a:hover { text-decoration: underline; } code { display: inline-block; padding: 3px 4px; background-color: #ECEFF1; border-radius: 3px; font-family: 'Roboto Mono',"Liberation Mono",Courier,monospace; font-size: 14px; line-height: 1; } .logo { display: block; text-align: center; margin-top: 48px; margin-bottom: 24px; } img { width: 220px; } @media screen and (max-width: 616px) { body { margin-top: 24px; } .logo { margin: 0; } } </style> </head> <body> <h1>Site Not Found</h1> <h2>Why am I seeing this?</h2> <p> There are a few potential reasons: </p> <ol> <li>You haven't deployed an app yet.</li> <li>You may have deployed an empty directory.</li> <li>This is a custom domain, but we haven't finished setting it up yet.</li> </ol> <h2>How can I deploy my first app?</h2> <p>Refer to our <a href="https://firebase.google.com/docs/hosting/">hosting documentation</a> to get started.</p> <a class="logo" href="https://firebase.google.com"> <img src="data:image/png;base64,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
Open service 2620:0:890::100:443 · mindlight.indielevelstudio.dev
2024-05-28 09:45
HTTP/1.1 404 Not Found Connection: close Content-Length: 10601 Cache-Control: max-age=0 Content-Type: text/html; charset=utf-8 Strict-Transport-Security: max-age=31556926 Accept-Ranges: bytes Date: Tue, 28 May 2024 09:45:06 GMT X-Served-By: cache-fra-eddf8230098-FRA X-Cache: HIT X-Cache-Hits: 1 X-Timer: S1716889507.687532,VS0,VE2 Vary: x-fh-requested-host, accept-encoding alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400 Page title: Site Not Found <!doctype html> <html> <head> <title>Site Not Found</title> <link href='https://fonts.googleapis.com/css?family=Roboto' rel='stylesheet' type='text/css'> <meta name="viewport" content="width=device-width, initial-scale=1"> <style> body { margin: 0 auto; margin-top: 48px; max-width: 616px; padding: 0 16px; font-family: 'Roboto', 'Helvetica Neue', sans-serif; font-size: 16px; line-height: 24px; color: rgba(0,0,0,0.87); } h1, h2, h3 { font-family: 'Roboto', 'Helvetica Neue', sans-serif; font-weight: 300; } h1 { margin: 24px 0 16px 0; padding: 0 0 16px 0; border-bottom: 1px solid rgba(0,0,0,0.1); font-size: 32px; line-height: 36px; } h2 { margin: 24px 0 16px 0; padding: 0; font-size: 20px; line-height: 32px; color: rgba(0,0,0,0.54); } p { margin: 0; margin-bottom: 16px; } ol { margin: 0; } ol li { margin: 0; line-height: 24px; padding-left: 12px; } a { color: #039BE5; text-decoration: underline; } a:hover { text-decoration: underline; } code { display: inline-block; padding: 3px 4px; background-color: #ECEFF1; border-radius: 3px; font-family: 'Roboto Mono',"Liberation Mono",Courier,monospace; font-size: 14px; line-height: 1; } .logo { display: block; text-align: center; margin-top: 48px; margin-bottom: 24px; } img { width: 220px; } @media screen and (max-width: 616px) { body { margin-top: 24px; } .logo { margin: 0; } } </style> </head> <body> <h1>Site Not Found</h1> <h2>Why am I seeing this?</h2> <p> There are a few potential reasons: </p> <ol> <li>You haven't deployed an app yet.</li> <li>You may have deployed an empty directory.</li> <li>This is a custom domain, but we haven't finished setting it up yet.</li> </ol> <h2>How can I deploy my first app?</h2> <p>Refer to our <a href="https://firebase.google.com/docs/hosting/">hosting documentation</a> to get started.</p> <a class="logo" href="https://firebase.google.com"> <img src="data:image/png;base64,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
Open service 199.36.158.100:80 · mindlight.indielevelstudio.dev
2024-05-28 09:45
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://mindlight.indielevelstudio.dev/ Accept-Ranges: bytes Date: Tue, 28 May 2024 09:45:05 GMT X-Served-By: cache-fra-eddf8230140-FRA X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1716889505.210736,VS0,VE0 alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400
Open service 2620:0:890::100:80 · mindlight.indielevelstudio.dev
2024-05-28 09:45
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://mindlight.indielevelstudio.dev/ Accept-Ranges: bytes Date: Tue, 28 May 2024 09:45:05 GMT X-Served-By: cache-fra-eddf8230099-FRA X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1716889505.209892,VS0,VE0 alt-svc: h3=":443";ma=86400,h3-29=":443";ma=86400,h3-27=":443";ma=86400