Microsoft-IIS 10.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549a26468aad63fcb51f495ad0ad12c8edaeb97f91a
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/Cache/clear/{cacheKey}
GET /
GET /Health
GET /api/Container/vehicle
GET /api/Delay
GET /api/Enrollment/sas
GET /api/Vehicle/truck
GET /api/Vehicle/truck/lease
POST /api/Container/image
POST /api/Enrollment/devicesnapshot
POST /api/Enrollment/iotenroll
POST /api/Job/search
POST /api/Vehicle/truck/assign/{vrm}
POST /api/Vehicle/truck/unassign/{vrm}
PUT /api/Job
PUT /api/JobAction/{jobNumber}/containers
PUT /api/JobAction/{jobNumber}/delays
PUT /api/JobAction/{jobNumber}/events
PUT /api/JobAction/{jobNumber}/incidents
PUT /api/JobAction/{jobNumber}/locationevents
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549a26468aad06a26f7a4d32cd7d70a3c2ab87501f5
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/Cache/clear/{cacheKey}
GET /Health
GET /api/Container/vehicle
GET /api/Delay
GET /api/Enrollment/sas
GET /api/Vehicle/truck
GET /api/Vehicle/truck/lease
POST /api/Container/image
POST /api/Enrollment/devicesnapshot
POST /api/Enrollment/iotenroll
POST /api/Job/search
POST /api/Vehicle/truck/assign/{vrm}
POST /api/Vehicle/truck/unassign/{vrm}
PUT /api/Job
PUT /api/JobAction/{jobNumber}/containers
PUT /api/JobAction/{jobNumber}/delays
PUT /api/JobAction/{jobNumber}/events
PUT /api/JobAction/{jobNumber}/incidents
PUT /api/JobAction/{jobNumber}/locationevents
Open service 104.214.236.47:443 · ontrackapi-dev.emrgroup.com
2026-01-23 05:42
HTTP/1.1 200 OK Content-Length: 2 Connection: close Content-Type: text/plain Date: Fri, 23 Jan 2026 05:43:15 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=f0b86642451d8b7110684d11490ee78722a4039292b3de4a17c9339051a0bcbe;Path=/;HttpOnly;Secure;Domain=ontrackapi-dev.emrgroup.com Set-Cookie: ARRAffinitySameSite=f0b86642451d8b7110684d11490ee78722a4039292b3de4a17c9339051a0bcbe;Path=/;HttpOnly;SameSite=None;Secure;Domain=ontrackapi-dev.emrgroup.com Request-Context: appId=cid-v1:38ef368e-09ba-4615-a9ea-6eee94646b4e X-Powered-By: ASP.NET Ok
Open service 104.214.236.47:443 · ontrackapi-dev.emrgroup.com
2026-01-09 19:32
HTTP/1.1 200 OK Content-Length: 2 Connection: close Content-Type: text/plain Date: Fri, 09 Jan 2026 19:33:25 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=48d7d59c0344b5eef76993fb05e6ae10dff775335f1dec01774806409a028ff5;Path=/;HttpOnly;Secure;Domain=ontrackapi-dev.emrgroup.com Set-Cookie: ARRAffinitySameSite=48d7d59c0344b5eef76993fb05e6ae10dff775335f1dec01774806409a028ff5;Path=/;HttpOnly;SameSite=None;Secure;Domain=ontrackapi-dev.emrgroup.com Request-Context: appId=cid-v1:38ef368e-09ba-4615-a9ea-6eee94646b4e X-Powered-By: ASP.NET Ok
Open service 104.214.236.47:443 · ontrackapi-dev.emrgroup.com
2026-01-02 18:51
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Fri, 02 Jan 2026 18:51:55 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=48d7d59c0344b5eef76993fb05e6ae10dff775335f1dec01774806409a028ff5;Path=/;HttpOnly;Secure;Domain=ontrackapi-dev.emrgroup.com Set-Cookie: ARRAffinitySameSite=48d7d59c0344b5eef76993fb05e6ae10dff775335f1dec01774806409a028ff5;Path=/;HttpOnly;SameSite=None;Secure;Domain=ontrackapi-dev.emrgroup.com Request-Context: appId=cid-v1:38ef368e-09ba-4615-a9ea-6eee94646b4e X-Powered-By: ASP.NET
Open service 104.214.236.47:443 · ontrackapi-dev.emrgroup.com
2025-12-23 05:44
HTTP/1.1 404 Not Found Content-Length: 0 Connection: close Date: Tue, 23 Dec 2025 05:44:53 GMT Server: Microsoft-IIS/10.0 Set-Cookie: ARRAffinity=0bd39a9e2add3578d95db2e740b82d8cd429b3b86f984b05eeca5a88c8b607b5;Path=/;HttpOnly;Secure;Domain=ontrackapi-dev.emrgroup.com Set-Cookie: ARRAffinitySameSite=0bd39a9e2add3578d95db2e740b82d8cd429b3b86f984b05eeca5a88c8b607b5;Path=/;HttpOnly;SameSite=None;Secure;Domain=ontrackapi-dev.emrgroup.com Request-Context: appId= X-Powered-By: ASP.NET