Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Open service 13.67.63.90:443 ยท ndwc-dev.pranworks.com
2026-01-23 14:37
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 14:37:34 GMT Server: Microsoft-IIS/10.0 Cache-Control: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Location: / Pragma: no-cache Set-Cookie: idsrv.session=ELCurLqu8p_9ANPk7wok8A; path=/; secure; samesite=none Set-Cookie: .AspNetCore.Identity.Application=CfDJ8PqJSsMblL9EhIINBdFPmXOcbczvZflo8fq03Bway3pcWoVd77HnI1CghigI03ZAq17m5cEyDhIuHz_-pmJ9vCZ76mx1wKqxuvANpX1VVBTEL7p8j4oKM8xCGpgRwdwTC6id-3uEHDhPFqCkZPiUpXFCZ02iMCk6B5UiT52eztYJgMkJS8MKm80OkR00UXRRRWKWkcDQE0nmn2vUs7nbHIzljRoQ50z9pQst5wwJy-dj78G2KsXLrCbGadgczoSvYru_TtGkSYOVrVFaodaNHBG1IkDYmr3SvOyGnOBsCBV6TE71t9i4kzXCWsVkSEmIoLnqKMc71sZDLa27Ray26DYxcDIBv_a1_-fRFUwowKhLUDyfnwvVU3i9xjADk5lduMou4NQHHvjLMx2cekop9y8Y99xdzCEEPwqlT8Ybc58N01hT7mwgA81_CbznJpvphPPEWfbFgJHCSBo_t72l4UaXm9CExO-pKgOKUAg-mgzPKSrBjfce1-GMkdFoWM3rsKijnnG4sWZUcltmown4Y7lX8a2K2VsV926AsPr705GQoOPIVt3gYE9j863SJ2qC7qKbHjr8UWls3MyxZWVVjg3ns6_cP8vjokAI94QCFIYAmFrJc9syJGcJozbBUZvQbgPCJPuQPUtQPHSxikWyBdhyQuOyA86sbHhPyu31tvmG_Pw6DAMsO_7tcVFtr_33DDuNHgGV1JAHCX4Yx6aiTP9W2rxF6utSqydAd-pNw-LrcIlw83wiETm9rm9QhqcNQRKV7ScjLjafo8YQ31tgBQtJuoBIbIsGd4sjk4H_Bp3TAorEXRB0Z3n9PfT9WuxGh2T8NzBkYXc38oUWnosIfpeK8DjLjYl4Bqc3BanA85fNX07v-qgcgQstj_UJQbfUuKS9wy_20G3MNogyICJRdJLvgx6Faho5ZCe8rf_s5LK0Y5G_NFoSMJa3hHO6mYpsgsXBKP6EL2YB1-tkiP-rBYFlzatNMmHhw4QVvLHc9R6poHwp6njuwcq8iXTjt4XdsWH70Q9XZocT5ZxtjOfv4KVHb3A7zyzdYh0vfkNl3xeR; expires=Fri, 06 Feb 2026 14:37:35 GMT; path=/; secure; samesite=none; httponly Set-Cookie: ARRAffinity=78b3b6de5889e75766fc77845f29cd3a78cb923f633722e35ce236a95452c1d3;Path=/;HttpOnly;Secure;Domain=ndwc-dev.pranworks.com Set-Cookie: ARRAffinitySameSite=78b3b6de5889e75766fc77845f29cd3a78cb923f633722e35ce236a95452c1d3;Path=/;HttpOnly;SameSite=None;Secure;Domain=ndwc-dev.pranworks.com X-Powered-By: ASP.NET