cloudflare
tcp/8443
The following CloudPanel instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since it could lead to RCE ( Remote Code Execution ). Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 8bb944476a146f564acb1065676cae8c22dc3d2e22dc3d2e22dc3d2e22dc3d2e
Found vulnerable CloudPanel: Affected by CVE-2023-35885 Affected by CVE-2023-36630
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-12-21 00:22
HTTP/1.1 302 Found Date: Sat, 21 Dec 2024 00:22:50 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Sat, 21 Dec 2024 00:22:50 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=3lju66oojtqg19pkoi0vpc6tdq; path=/; secure; httponly; samesite=lax cf-cache-status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=%2FT8gYTc2OdMJD335cfII1nov7LvPZvzT1jPjS5HmJu7jk%2BjNN2RhPqo4tLOx9dulM9i1TNhnX0cm2CwQCIWB%2Fj5EXzhuaKD94w%2BTAesM4T71NTMTP0ddcTJt%2F%2BVi80gRyVXbtBxMbjJgzIsDWbXa2A%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8f53b8570ca7fd2f-SIN alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=1095&min_rtt=991&rtt_var=352&sent=5&recv=7&lost=0&retrans=0&sent_bytes=3137&recv_bytes=590&delivery_rate=4152963&cwnd=252&unsent_bytes=0&cid=123c1eda3d21d053&ts=256&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-12-19 00:36
HTTP/1.1 302 Found Date: Thu, 19 Dec 2024 00:36:58 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Thu, 19 Dec 2024 00:36:58 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=fg2a6pbv85iufbchhig7mqqmp9; path=/; secure; httponly; samesite=lax cf-cache-status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=UsjjIzK795eg3X7%2B2vS2%2BZJAQu5rxojs9FYmx%2FSqShZK9Z4%2BgPN7gnR7eMIDjTRl9kvX7SKIy4LGWdjsNUppOUeo3eSobcaG2C9m8mu39H3QSR1yb2DFs%2FZkvFAoJGOtSNGf4D5lZruXzVHL1wwgFQ%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8f435244cf430f75-EWR alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=720&min_rtt=719&rtt_var=271&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3137&recv_bytes=590&delivery_rate=6041724&cwnd=215&unsent_bytes=0&cid=d3d30a7233c4d1bc&ts=464&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-12-14 10:34
HTTP/1.1 302 Found Date: Sat, 14 Dec 2024 10:34:58 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Sat, 14 Dec 2024 10:34:57 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax set-cookie: cloudpanel=qvh8s1f2ld5ri3s6tpm95520i0; path=/; secure; httponly; samesite=lax CF-Cache-Status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=XAdmjMGp0N5dBz59bMkIB39me%2BTz4nDzxytg6bwvKSydH0a3yYUS1DnoXs3Ne%2BUaX4PSfF0P1B5S4hWXrW9V8ED8pj08rWzCOt%2FxB4niB9HxBsYHzsB5bIoGV%2F08zUhNpTRVBZl3d7Az9aI%2B8paukw%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8f1d8b5b487a4da8-FRA alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=746&min_rtt=745&rtt_var=283&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3138&recv_bytes=590&delivery_rate=5723320&cwnd=241&unsent_bytes=0&cid=d41ef792212726ff&ts=1027&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-12-12 23:05
HTTP/1.1 302 Found Date: Thu, 12 Dec 2024 23:05:48 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Thu, 12 Dec 2024 23:05:48 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=3u4kl40cpf5o3km6c44149cch4; path=/; secure; httponly; samesite=lax CF-Cache-Status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=d0OQxVaz0KhtdxSHeK6I1j3OFHQs8qY2jhxMDb4bGr45OTePBDNIxK8OnpbNbWxgcEeAf3ZEt0xysFYTz8HThlr0Bk%2FKiZkgJkZoddVN9JPIKxbUw%2ByVBf4fLSmGo4dZZN0TBPwtciwdsFIUfjeWvQ%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8f115c7b58e1fd08-SIN alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=918&min_rtt=889&rtt_var=354&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3140&recv_bytes=590&delivery_rate=4886389&cwnd=252&unsent_bytes=0&cid=22d0ca82552a4f27&ts=237&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-12-03 00:22
HTTP/1.1 302 Found Date: Tue, 03 Dec 2024 00:22:54 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Tue, 03 Dec 2024 00:22:54 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax set-cookie: cloudpanel=rfi5ahull9d83f8ff8ct8r77tf; path=/; secure; httponly; samesite=lax CF-Cache-Status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=DmnU6AEr8APJpNSgMEeWUfT2lXtZcwHfSHX%2BVKFREwD1%2BKtR93vhQieLTGghKK%2F4s3hxBXLufPVrOzgp6%2FWGfbnB%2Bjf8l6wUM887Bu9QDVlX3%2BySz1yrGl9ro68MeuYYsEUXpUtbfgFeGmF8fx1MrA%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8ebf67ae4cf0dc9e-FRA alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=797&min_rtt=796&rtt_var=300&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3139&recv_bytes=590&delivery_rate=5402985&cwnd=247&unsent_bytes=0&cid=26b568d80addc0ef&ts=397&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-11-30 14:49
HTTP/1.1 302 Found Date: Sat, 30 Nov 2024 14:49:30 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Sat, 30 Nov 2024 14:49:30 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax set-cookie: cloudpanel=avkr2vsub95lvhcqv9gs3a9nk9; path=/; secure; httponly; samesite=lax CF-Cache-Status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=V0CvHcunr60kyk%2FqH7DZiivBOGEB2%2B2MwE0keAuYKRSW7xj3yI1fKCMqF%2Ffe7BpypwzmqMp5tB1i4YmQX5q6TrzNKZEDd8DJ%2FPwMLIJtjr5LCTcssMnF7aVteDry1tRGxLr%2F%2FHxlvFIjdM3lNOrlEw%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8eaba4fcf9fdab72-YYZ alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=830&min_rtt=820&rtt_var=315&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3138&recv_bytes=590&delivery_rate=5297560&cwnd=252&unsent_bytes=0&cid=9d8427fd6ef5d2de&ts=554&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 104.21.93.234:8443 · www.ambemaahomeappliances.com
2024-11-28 19:29
HTTP/1.1 302 Found Date: Thu, 28 Nov 2024 19:29:25 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private location: /login expires: Thu, 28 Nov 2024 19:29:25 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=a3jfel0bmhe1tia4qicg65j7ib; path=/; secure; httponly; samesite=lax cf-cache-status: DYNAMIC Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=oM405z%2BZZLDxaBanil2oNydL6woBzQVUgFiuy299mBs%2FqGc2VFquynFURGzyxwXwYz3natTiW0KSFRobK6cY5hF7lT01JD4%2BLO7cUnxH%2BsfcrIOWbnyEaD1kMF4xhsQBJ%2F0BgSrqi7rMz5xmhQoXfg%3D%3D"}],"group":"cf-nel","max_age":604800} NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800} Server: cloudflare CF-RAY: 8e9cc4423f13d36c-FRA alt-svc: h3=":8443"; ma=86400 server-timing: cfL4;desc="?proto=TCP&rtt=794&min_rtt=754&rtt_var=311&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3140&recv_bytes=590&delivery_rate=5761273&cwnd=252&unsent_bytes=0&cid=f3a15842aec66222&ts=723&x=0" Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>