.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09cff76d438ff76d438b0922cdc633adc973940d648ddac8340
Found 93 files trough .DS_Store spidering: /admin /admin/admin.js /admin/admin0.js /admin/admin1.js /admin/assets /admin/assets/css /admin/assets/js /admin/assets/media /admin/assets/media/avatars /admin/assets/media/books /admin/assets/media/demos /admin/assets/media/flags /admin/assets/media/icons /admin/assets/media/illustrations /admin/assets/media/illustrations/sketchy-1 /admin/assets/media/loading /admin/assets/media/logos /admin/assets/media/logos/59x40.png /admin/assets/media/logos/avantage.jpg /admin/assets/media/logos/avantge.png /admin/assets/media/logos/banner-connexion.jpeg /admin/assets/media/logos/banner-cov.jpeg /admin/assets/media/logos/bracellet.jpg /admin/assets/media/logos/cible.png /admin/assets/media/logos/cmcs.jpg /admin/assets/media/logos/conexion.jpg /admin/assets/media/logos/contact.png /admin/assets/media/logos/contacter.jpg /admin/assets/media/logos/email.png /admin/assets/media/logos/espace_sante.png /admin/assets/media/logos/fonction.png /admin/assets/media/logos/imgsante.jpg /admin/assets/media/logos/jfille.jpg /admin/assets/media/logos/localise.png /admin/assets/media/logos/localiser.png /admin/assets/media/logos/logo 269x56.png /admin/assets/media/logos/Logo AccLab.jpg /admin/assets/media/logos/LOGO MAMAFRICA-FR.jpg /admin/assets/media/logos/logo-1-dark.svg /admin/assets/media/logos/logo-1.svg /admin/assets/media/logos/logo-2.svg /admin/assets/media/logos/logo-3.svg /admin/assets/media/logos/logo-jeny.png /admin/assets/media/logos/logo-landing-dark.svg /admin/assets/media/logos/logo-landing.svg /admin/assets/media/logos/logo-sgci.png /admin/assets/media/logos/logo.png /admin/assets/media/logos/logo_blanc.png /admin/assets/media/logos/logo_mobi_simple_Transparent.png /admin/assets/media/logos/logo_pass_mu.png /admin/assets/media/logos/logo_synamepci.png /admin/assets/media/logos/logopsm.png /admin/assets/media/logos/loma.png /admin/assets/media/logos/mail.svg /admin/assets/media/logos/man.png /admin/assets/media/logos/mshp.jpg /admin/assets/media/logos/ong_agis.png /admin/assets/media/logos/passsante.ico /admin/assets/media/logos/person.jpg /admin/assets/media/logos/PNUD.png /admin/assets/media/logos/profil.png /admin/assets/media/logos/psmo.jpg /admin/assets/media/logos/yellow_startup.jpeg /admin/assets/media/misc /admin/assets/media/patterns /admin/assets/media/plugins /admin/assets/media/print /admin/assets/media/product-demos /admin/assets/media/products /admin/assets/media/smiles /admin/assets/media/stock /admin/assets/media/stock/1600x800 /admin/assets/media/stock/600x400 /admin/assets/media/stock/600x600 /admin/assets/media/stock/900x600 /admin/assets/media/stock/ecommerce /admin/assets/media/svg /admin/assets/media/technology-logos /admin/assets/plugins /admin/custom /admin/DataTables /admin/jquery-3.4.1.min.js /admin/jquery.form.js /admin/js /admin/psm /admin/ressource /build /bundles /css /index.php /medecin /test /uploads
Severity: medium
Fingerprint: 5f32cf5d6962f09c248e4f81248e4f81346b51a9e891054cca75f24fbe7cc3c3
Found 41 files trough .DS_Store spidering: /admin /admin/admin.js /admin/admin0.js /admin/admin1.js /admin/assets /admin/assets/css /admin/assets/js /admin/assets/media /admin/assets/media/avatars /admin/assets/media/books /admin/assets/media/demos /admin/assets/media/flags /admin/assets/media/icons /admin/assets/media/illustrations /admin/assets/media/loading /admin/assets/media/logos /admin/assets/media/misc /admin/assets/media/patterns /admin/assets/media/plugins /admin/assets/media/print /admin/assets/media/product-demos /admin/assets/media/products /admin/assets/media/smiles /admin/assets/media/stock /admin/assets/media/svg /admin/assets/media/technology-logos /admin/assets/plugins /admin/custom /admin/DataTables /admin/jquery-3.4.1.min.js /admin/jquery.form.js /admin/js /admin/psm /admin/ressource /build /bundles /css /index.php /medecin /test /uploads
Severity: medium
Fingerprint: 5f32cf5d6962f09c0ac411c00ac411c0764414046179bd2f556662406321c891
Found 88 files trough .DS_Store spidering: /admin /admin/admin.js /admin/admin0.js /admin/admin1.js /admin/assets /admin/assets/css /admin/assets/js /admin/assets/media /admin/assets/media/avatars /admin/assets/media/books /admin/assets/media/demos /admin/assets/media/flags /admin/assets/media/icons /admin/assets/media/illustrations /admin/assets/media/illustrations/sketchy-1 /admin/assets/media/loading /admin/assets/media/logos /admin/assets/media/logos/59x40.png /admin/assets/media/logos/avantage.jpg /admin/assets/media/logos/avantge.png /admin/assets/media/logos/banner-connexion.jpeg /admin/assets/media/logos/banner-cov.jpeg /admin/assets/media/logos/bracellet.jpg /admin/assets/media/logos/cible.png /admin/assets/media/logos/cmcs.jpg /admin/assets/media/logos/conexion.jpg /admin/assets/media/logos/contact.png /admin/assets/media/logos/contacter.jpg /admin/assets/media/logos/email.png /admin/assets/media/logos/espace_sante.png /admin/assets/media/logos/fonction.png /admin/assets/media/logos/imgsante.jpg /admin/assets/media/logos/jfille.jpg /admin/assets/media/logos/localise.png /admin/assets/media/logos/localiser.png /admin/assets/media/logos/logo 269x56.png /admin/assets/media/logos/Logo AccLab.jpg /admin/assets/media/logos/LOGO MAMAFRICA-FR.jpg /admin/assets/media/logos/logo-1-dark.svg /admin/assets/media/logos/logo-1.svg /admin/assets/media/logos/logo-2.svg /admin/assets/media/logos/logo-3.svg /admin/assets/media/logos/logo-jeny.png /admin/assets/media/logos/logo-landing-dark.svg /admin/assets/media/logos/logo-landing.svg /admin/assets/media/logos/logo-sgci.png /admin/assets/media/logos/logo.png /admin/assets/media/logos/logo_blanc.png /admin/assets/media/logos/logo_mobi_simple_Transparent.png /admin/assets/media/logos/logo_pass_mu.png /admin/assets/media/logos/logo_synamepci.png /admin/assets/media/logos/logopsm.png /admin/assets/media/logos/loma.png /admin/assets/media/logos/mail.svg /admin/assets/media/logos/man.png /admin/assets/media/logos/mshp.jpg /admin/assets/media/logos/ong_agis.png /admin/assets/media/logos/passsante.ico /admin/assets/media/logos/person.jpg /admin/assets/media/logos/PNUD.png /admin/assets/media/logos/profil.png /admin/assets/media/logos/psmo.jpg /admin/assets/media/logos/yellow_startup.jpeg /admin/assets/media/misc /admin/assets/media/patterns /admin/assets/media/plugins /admin/assets/media/print /admin/assets/media/product-demos /admin/assets/media/products /admin/assets/media/smiles /admin/assets/media/stock /admin/assets/media/svg /admin/assets/media/technology-logos /admin/assets/plugins /admin/custom /admin/DataTables /admin/jquery-3.4.1.min.js /admin/jquery.form.js /admin/js /admin/psm /admin/ressource /build /bundles /css /index.php /medecin /test /uploads
Severity: medium
Fingerprint: 5f32cf5d6962f09cef4770e6ef4770e6843b7c92df8a5bedf021c0e242154d81
Found 42 files trough .DS_Store spidering: /admin /admin/admin.js /admin/admin0.js /admin/admin1.js /admin/assets /admin/assets/css /admin/assets/js /admin/assets/media /admin/assets/media/avatars /admin/assets/media/books /admin/assets/media/demos /admin/assets/media/flags /admin/assets/media/icons /admin/assets/media/illustrations /admin/assets/media/illustrations/sketchy-1 /admin/assets/media/loading /admin/assets/media/logos /admin/assets/media/misc /admin/assets/media/patterns /admin/assets/media/plugins /admin/assets/media/print /admin/assets/media/product-demos /admin/assets/media/products /admin/assets/media/smiles /admin/assets/media/stock /admin/assets/media/svg /admin/assets/media/technology-logos /admin/assets/plugins /admin/custom /admin/DataTables /admin/jquery-3.4.1.min.js /admin/jquery.form.js /admin/js /admin/psm /admin/ressource /build /bundles /css /index.php /medecin /test /uploads
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea96ba46591a440ab04891745a7026ddd31
Found 23 files trough .DS_Store spidering: /admin /admin/admin.js /admin/admin0.js /admin/admin1.js /admin/assets /admin/assets/css /admin/assets/js /admin/assets/media /admin/assets/plugins /admin/custom /admin/DataTables /admin/jquery-3.4.1.min.js /admin/jquery.form.js /admin/js /admin/psm /admin/ressource /build /bundles /css /index.php /medecin /test /uploads
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07d18752b5d18752b5d18752b5d18752b5d18752b5
Symfony profiler enabled: https://www.smartcaresolution.org/_profiler/empty/search/results
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65225ac3aaa8
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@bitbucket.org:hosting-esante/smartcaresolution.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master