nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-22 04:57
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 04:50:57 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPB8GVYKQZJ1Q072H0ENNBC","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPB8GVYKQZJ1Q072H0ENNBC X-Runtime: 0.038349 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-20 01:32
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 01:25:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGTQGVV6GA15Z848YS5CAAY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGTQGVV6GA15Z848YS5CAAY X-Runtime: 0.037156 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-18 11:09
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 11:03:39 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFCQ02S6PS04BGR7VDS76PFW","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFCQ02S6PS04BGR7VDS76PFW X-Runtime: 0.083501 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-16 05:23
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 Dec 2024 05:16:59 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6YBX3BS960DWTMM00GHB6Q","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6YBX3BS960DWTMM00GHB6Q X-Runtime: 0.040222 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-14 15:26
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 15:20:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2W3PCQDSAXWGZRM8G1ZBJE","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2W3PCQDSAXWGZRM8G1ZBJE X-Runtime: 0.039628 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-12 23:11
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 23:05:06 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEYHWSKTX03ACK69DG164AJZ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEYHWSKTX03ACK69DG164AJZ X-Runtime: 0.037515 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-12-02 18:12
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 18:06:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE48V1GCYWZ4FKXTW9QXETT6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE48V1GCYWZ4FKXTW9QXETT6 X-Runtime: 0.087486 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-11-30 18:39
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 18:33:31 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZ5JWGTSBHWAR04F9R2BSEP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZ5JWGTSBHWAR04F9R2BSEP X-Runtime: 0.081574 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-11-28 09:17
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 09:11:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDS0ME1DQJJV312GJB4ERW4E","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDS0ME1DQJJV312GJB4ERW4E X-Runtime: 0.079643 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>
Open service 69.197.145.229:443 · mail.kitchenmatter.com
2024-11-26 20:05
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 19:59:57 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://mail.kitchenmatter.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDN0Y8SQM98F0FN9SYQG40A6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDN0Y8SQM98F0FN9SYQG40A6 X-Runtime: 0.090360 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://mail.kitchenmatter.com/users/sign_in">redirected</a>.</body></html>