nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-22 01:20
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 01:20:31 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNZ77BKDJEXM7RVT5J0M7YG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNZ77BKDJEXM7RVT5J0M7YG X-Runtime: 0.022880 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-20 14:42
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 14:42:40 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFJ8AJKH1GRVM1ZRRE5MRZT5","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFJ8AJKH1GRVM1ZRRE5MRZT5 X-Runtime: 0.023319 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-20 01:53
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 01:53:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGWAC3XG38264EFF26CT474","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGWAC3XG38264EFF26CT474 X-Runtime: 0.047383 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-18 14:40
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 14:40:30 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFD3D5JBPMFMG8WSE5VGRA8B","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFD3D5JBPMFMG8WSE5VGRA8B X-Runtime: 0.026122 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-18 02:22
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 02:22:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBS5RWW7745VCC9NQXC25AK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBS5RWW7745VCC9NQXC25AK X-Runtime: 0.025027 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-16 05:08
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 Dec 2024 05:08:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6XWHQP6GCEET0C596CBY2W","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6XWHQP6GCEET0C596CBY2W X-Runtime: 0.023533 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-16 00:26
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 Dec 2024 00:26:41 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6DRAY90JWV2FKMJ3P7JSHS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6DRAY90JWV2FKMJ3P7JSHS X-Runtime: 0.033542 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-14 06:04
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 06:04:33 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1W9J40ZZ6AV1GN12G6MTMR","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1W9J40ZZ6AV1GN12G6MTMR X-Runtime: 0.027852 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-14 00:29
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 00:29:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF193YDPNSX84MC6G1QRF714","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF193YDPNSX84MC6G1QRF714 X-Runtime: 0.034957 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-12 08:04
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 08:04:18 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEWYBC6TGFJP30JM34PVAQ3G","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEWYBC6TGFJP30JM34PVAQ3G X-Runtime: 0.025996 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-12 01:36
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 01:36:22 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEW8527HG0X4KXB5F9K942QV","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEW8527HG0X4KXB5F9K942QV X-Runtime: 0.038372 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-02 09:17
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 09:17:02 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE3AHBS3K68SRFTVHXKNMSQR","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE3AHBS3K68SRFTVHXKNMSQR X-Runtime: 0.039556 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-02 02:58
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 02:58:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE2MWDWKYDP1P9206T0X2K87","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE2MWDWKYDP1P9206T0X2K87 X-Runtime: 0.023996 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-12-01 00:00
HTTP/1.1 302 Found Server: nginx Date: Sun, 01 Dec 2024 00:00:33 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZR9P9K4XEVJAK08TMD11ES","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZR9P9K4XEVJAK08TMD11ES X-Runtime: 0.052211 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-11-30 01:53
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 01:53:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDXCBJJAZSGJEM07FM2CZ10K","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDXCBJJAZSGJEM07FM2CZ10K X-Runtime: 0.029446 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-11-28 23:13
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 23:13:58 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDTGTYRDXT26B8QRZGC1H46W","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDTGTYRDXT26B8QRZGC1H46W X-Runtime: 0.028642 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-11-28 02:05
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 02:05:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDR884V9SFP82M7SKHHDXVJ0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDR884V9SFP82M7SKHHDXVJ0 X-Runtime: 0.032993 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-11-26 20:07
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 20:07:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDN1BZYRJS57SFA16SAK46EA","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDN1BZYRJS57SFA16SAK46EA X-Runtime: 0.032079 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>
Open service 142.93.178.239:443 · www.hammerheaddent.com
2024-11-20 18:42
HTTP/1.1 302 Found Server: nginx Date: Wed, 20 Nov 2024 18:42:18 GMT Content-Type: text/html; charset=utf-8 Content-Length: 110 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://www.hammerheaddent.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD5E3S83P8DMKD9NNAMMGMMK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD5E3S83P8DMKD9NNAMMGMMK X-Runtime: 0.035824 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://www.hammerheaddent.com/users/sign_in">redirected</a>.</body></html>