nginx
tcp/443
nginx 1.18.0
tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-22 04:06
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 04:06:14 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFP8PN5WB043K89YVHCCGGDX","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFP8PN5WB043K89YVHCCGGDX X-Runtime: 0.045327 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-20 05:52
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 05:52:52 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFHA0FJRA0W6WTWC0Y17R85G","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFHA0FJRA0W6WTWC0Y17R85G X-Runtime: 0.017462 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-19 01:07
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 01:07:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFE799BEX9BAZNA3ZR9S3H3H","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFE799BEX9BAZNA3ZR9S3H3H X-Runtime: 0.057403 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-14 16:02
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 16:02:45 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2YGX0SW1V634V2JGJZ7W4W","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2YGX0SW1V634V2JGJZ7W4W X-Runtime: 0.015080 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-13 08:08
HTTP/1.1 302 Found Server: nginx Date: Fri, 13 Dec 2024 08:08:12 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEZGZ7J0TTG4PVNQ0GZMA0WC","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEZGZ7J0TTG4PVNQ0GZMA0WC X-Runtime: 0.034861 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:80 · oldgitlab.svato.net
2024-12-13 08:08
HTTP/1.1 301 Moved Permanently Server: nginx/1.18.0 (Ubuntu) Date: Fri, 13 Dec 2024 08:08:06 GMT Content-Type: text/html Content-Length: 178 Connection: close Location: https://oldgitlab.svato.net/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.18.0 (Ubuntu)</center> </body> </html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-12 22:10
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 22:11:00 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEYESQSBWGGX8BREV5EXC41C","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEYESQSBWGGX8BREV5EXC41C X-Runtime: 0.047452 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-03 00:57
HTTP/1.1 302 Found Server: nginx Date: Tue, 03 Dec 2024 00:57:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE50B92EJ5XJ4FZ7NQ06BXCE","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE50B92EJ5XJ4FZ7NQ06BXCE X-Runtime: 0.060212 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-12-01 22:14
HTTP/1.1 302 Found Server: nginx Date: Sun, 01 Dec 2024 22:14:06 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE24KG3Y7N9F502NG1F9Z5BE","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE24KG3Y7N9F502NG1F9Z5BE X-Runtime: 0.019764 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:80 · oldgitlab.svato.net
2024-12-01 22:14
HTTP/1.1 301 Moved Permanently Server: nginx/1.18.0 (Ubuntu) Date: Sun, 01 Dec 2024 22:14:05 GMT Content-Type: text/html Content-Length: 178 Connection: close Location: https://oldgitlab.svato.net/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.18.0 (Ubuntu)</center> </body> </html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-11-30 17:00
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 17:00:05 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZ07SK5MHPPBKTJW247XC6C","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZ07SK5MHPPBKTJW247XC6C X-Runtime: 0.064556 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-11-28 16:27
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 16:27:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDSSJHF67ZNH57MEAJAPF9HA","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDSSJHF67ZNH57MEAJAPF9HA X-Runtime: 0.024673 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-11-26 21:36
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 21:36:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDN6FS3XGS37ZCCQ8TT0VJMK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDN6FS3XGS37ZCCQ8TT0VJMK X-Runtime: 0.054100 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>
Open service 91.139.30.137:443 · oldgitlab.svato.net
2024-11-21 01:27
HTTP/1.1 302 Found Server: nginx Date: Thu, 21 Nov 2024 01:27:56 GMT Content-Type: text/html; charset=utf-8 Content-Length: 107 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://oldgitlab.svato.net/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD65AGZJQW4BGHFH3TV3A6E2","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD65AGZJQW4BGHFH3TV3A6E2 X-Runtime: 0.055318 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://oldgitlab.svato.net/users/sign_in">redirected</a>.</body></html>