Apache
tcp/443 tcp/80
nginx
tcp/443 tcp/80
wp-includes/rest-api/endpoints/class-wp-rest-users-controller.php
in the REST API implementation in WordPress 4.7 before 4.7.1 does not properly restrict listings of post authors
This allows remote attackers to obtain sensitive information via a wp-json/wp/v2/users
request.
https://attackerkb.com/topics/7Ra6ySDgva/cve-2017-5487/vuln-details
Severity: low
Fingerprint: 4f2162be993c73bbfa0c1189fa0c11895f55d1ad8bc2d5d2b528eda7b528eda7
Found Wordpress users (CVE-2017-5487): User #1 admin Name: nagma Url:
MySQL is currently open without authentication.
This results in all the database data made available publicly.
Severity: high
Fingerprint: cf350410ecceb5fdb810c0fedc5372aa4a0586a9022c133c4db13b024388e818
Databases: 50, row count: 2189, size: 894.2 kB Found table mysql.column_stats with 0 records Found table mysql.columns_priv with 0 records Found table mysql.db with 3 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_slave_pos with 0 records Found table mysql.help_category with 39 records Found table mysql.help_keyword with 464 records Found table mysql.help_relation with 1028 records Found table mysql.help_topic with 508 records Found table mysql.host with 0 records Found table mysql.index_stats with 0 records Found table mysql.innodb_index_stats with 114 records Found table mysql.innodb_table_stats with 21 records Found table mysql.plugin with 0 records Found table mysql.proc with 2 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.roles_mapping with 0 records Found table mysql.servers with 0 records Found table mysql.slow_log with 2 records Found table mysql.table_stats with 0 records Found table mysql.tables_priv with 0 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 5 records Found table phpmyadmin.pma__bookmark with 0 records Found table phpmyadmin.pma__central_columns with 0 records Found table phpmyadmin.pma__column_info with 0 records Found table phpmyadmin.pma__designer_settings with 0 records Found table phpmyadmin.pma__export_templates with 0 records Found table phpmyadmin.pma__favorite with 0 records Found table phpmyadmin.pma__history with 0 records Found table phpmyadmin.pma__navigationhiding with 0 records Found table phpmyadmin.pma__pdf_pages with 0 records Found table phpmyadmin.pma__recent with 0 records Found table phpmyadmin.pma__relation with 0 records Found table phpmyadmin.pma__savedsearches with 0 records Found table phpmyadmin.pma__table_coords with 0 records Found table phpmyadmin.pma__table_info with 0 records Found table phpmyadmin.pma__table_uiprefs with 0 records Found table phpmyadmin.pma__tracking with 0 records Found table phpmyadmin.pma__userconfig with 0 records Found table phpmyadmin.pma__usergroups with 0 records Found table phpmyadmin.pma__users with 0 records Found table myhealth.test with 0 records
Open service 103.177.225.58:443 · demo.learnstowin.com
2023-01-16 16:15
Server: nginx Date: Mon, 16 Jan 2023 16:15:18 GMT Content-Type: text/html Content-Length: 138 Connection: close Location: https://learnstowin.com/ Page title: 302 Found <html> <head><title>302 Found</title></head> <body> <center><h1>302 Found</h1></center> <hr><center>nginx</center> </body> </html>
Open service 103.177.225.58:80 · demo.learnstowin.com
2023-01-16 16:15
Server: nginx Date: Mon, 16 Jan 2023 16:15:15 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://demo.learnstowin.com/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 103.177.225.58:80
2023-01-14 08:49
Server: nginx Date: Sat, 14 Jan 2023 08:49:47 GMT Content-Type: text/html Content-Length: 899 Last-Modified: Sat, 17 Dec 2022 09:20:34 GMT Connection: close ETag: "639d89e2-383" Accept-Ranges: bytes Page title: CPAS <!doctype html> <html lang="en"> <head> <meta charset="utf-8"> <title>CPAS</title> <base href="/"> <meta name="viewport" content="width=device-width, initial-scale=1"> <link rel="icon" type="image/x-icon" href="./assets/img/favicon.png"> <link rel="stylesheet" href="styles.8f32276d3bec128861f3.css"></head> <body> <app-root>Loading...</app-root> <script src="runtime-es2015.dfe1fd3170c0fd9b4a60.js" type="module"></script><script src="runtime-es5.dfe1fd3170c0fd9b4a60.js" nomodule defer></script><script src="polyfills-es5.811070027d1f9623e85d.js" nomodule defer></script><script src="polyfills-es2015.798ca9719e3cf8fe159a.js" type="module"></script><script src="scripts.175200447fff98634ed4.js" defer></script><script src="main-es2015.e20b273ed5d61ac47522.js" type="module"></script><script src="main-es5.e20b273ed5d61ac47522.js" nomodule defer></script></body> </html>
Open service 103.177.225.58:443
2022-11-18 06:20
Date: Fri, 18 Nov 2022 06:20:40 GMT Server: Apache Pragma: no-cache Cache-Control: max-age=0, must-revalidate, no-cache, no-store Expires: Thu, 18 Nov 2021 06:20:41 GMT X-Magento-Cache-Control: max-age=0, must-revalidate, no-cache, no-store X-Magento-Cache-Debug: MISS Content-Security-Policy-Report-Only: font-src 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com js.authorize.net jstest.authorize.net cdn-scripts.signifyd.com www.youtube.com js.braintreegateway.com *.avada.io 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com https://get.geojs.io *.avada.io 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Set-Cookie: PHPSESSID=3q8entpcj68hhb3cp3tlvuu5ta; expires=Fri, 18-Nov-2022 07:20:40 GMT; Max-Age=3600; path=/; domain=goutfits.com; SameSite=None; Secure Vary: User-Agent Upgrade: h2 Connection: Upgrade, close Location: https://goutfits.com/ X-UA-Compatible: IE=edge Content-Length: 0 Content-Type: text/html; charset=UTF-8
Open service 103.177.225.58:80
2022-11-16 21:56
Date: Wed, 16 Nov 2022 21:56:49 GMT Server: Apache Upgrade: h2 Connection: Upgrade, close Last-Modified: Wed, 03 Aug 2022 08:05:38 GMT ETag: "27e-5e551b2cbb7aa" Accept-Ranges: bytes Content-Length: 638 Vary: Accept-Encoding Content-Type: text/html Page title: Welcome to nginx! <!DOCTYPE html> <html> <head> <title>Welcome to nginx!</title> <style> html { color-scheme: light dark; } body { width: 35em; margin: 0 auto; font-family: Tahoma, Verdana, Arial, sans-serif; } </style> </head> <body> <h1>Welcome to nginx!</h1> <p>If you see this page, the nginx web server is successfully installed and working. Further configuration is required.</p> <p>For online documentation and support please refer to <a href="http://nginx.org/">nginx.org</a>.<br/> Commercial support is available at <a href="http://nginx.com/">nginx.com</a>.</p> <p><em>Thank you for using nginx.</em></p> </body> </html>
Open service 103.177.225.58:443
2022-12-20 18:38
Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: no-cache, private Date: Tue, 20 Dec 2022 18:38:15 GMT 34 The provided host name is not valid for this server. 0
Open service 103.177.225.58:443 · learnstowin.com
2022-12-20 15:10
Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Cache-Control: max-age=600, public Date: Sun, 18 Dec 2022 11:36:20 GMT X-Drupal-Dynamic-Cache: MISS X-Robots-Tag: noimageindex X-UA-Compatible: IE=edge Content-language: en X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN Expires: Sun, 19 Nov 1978 05:00:00 GMT Last-Modified: Sun, 18 Dec 2022 11:36:19 GMT ETag: "1671363379" Vary: Cookie X-Drupal-Cache: HIT Page title: Learns to Win
Open service 103.177.225.58:80 · learnstowin.com
2022-12-20 15:10
Server: nginx Date: Tue, 20 Dec 2022 15:10:29 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://learnstowin.com/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 103.177.225.58:80
2022-11-29 02:45
Date: Tue, 29 Nov 2022 02:45:13 GMT Server: Apache Upgrade: h2 Connection: Upgrade, close Last-Modified: Wed, 03 Aug 2022 08:05:38 GMT ETag: "27e-5e551b2cbb7aa" Accept-Ranges: bytes Content-Length: 638 Vary: Accept-Encoding Content-Type: text/html Page title: Welcome to nginx! <!DOCTYPE html> <html> <head> <title>Welcome to nginx!</title> <style> html { color-scheme: light dark; } body { width: 35em; margin: 0 auto; font-family: Tahoma, Verdana, Arial, sans-serif; } </style> </head> <body> <h1>Welcome to nginx!</h1> <p>If you see this page, the nginx web server is successfully installed and working. Further configuration is required.</p> <p>For online documentation and support please refer to <a href="http://nginx.org/">nginx.org</a>.<br/> Commercial support is available at <a href="http://nginx.com/">nginx.com</a>.</p> <p><em>Thank you for using nginx.</em></p> </body> </html>
Open service 103.177.225.58:80
2022-11-04 18:37
Date: Fri, 04 Nov 2022 18:37:12 GMT Server: Apache Upgrade: h2 Connection: Upgrade, close Last-Modified: Wed, 03 Aug 2022 08:05:38 GMT ETag: "27e-5e551b2cbb7aa" Accept-Ranges: bytes Content-Length: 638 Vary: Accept-Encoding Content-Type: text/html Page title: Welcome to nginx! <!DOCTYPE html> <html> <head> <title>Welcome to nginx!</title> <style> html { color-scheme: light dark; } body { width: 35em; margin: 0 auto; font-family: Tahoma, Verdana, Arial, sans-serif; } </style> </head> <body> <h1>Welcome to nginx!</h1> <p>If you see this page, the nginx web server is successfully installed and working. Further configuration is required.</p> <p>For online documentation and support please refer to <a href="http://nginx.org/">nginx.org</a>.<br/> Commercial support is available at <a href="http://nginx.com/">nginx.com</a>.</p> <p><em>Thank you for using nginx.</em></p> </body> </html>
Open service 103.177.225.58:443
2022-11-04 17:33
Date: Fri, 04 Nov 2022 17:33:45 GMT Server: Apache Pragma: no-cache Cache-Control: max-age=0, must-revalidate, no-cache, no-store Expires: Thu, 04 Nov 2021 17:33:45 GMT X-Magento-Cache-Control: max-age=0, must-revalidate, no-cache, no-store X-Magento-Cache-Debug: MISS Content-Security-Policy-Report-Only: font-src 'self' 'unsafe-inline'; form-action geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net 'self' 'unsafe-inline'; frame-ancestors 'self' 'unsafe-inline'; frame-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com 'self' 'unsafe-inline'; img-src widgets.magentocommerce.com www.googleadservices.com www.google-analytics.com t.paypal.com www.paypal.com www.paypalobjects.com fpdbs.paypal.com fpdbs.sandbox.paypal.com *.vimeocdn.com s.ytimg.com 'self' 'unsafe-inline'; script-src assets.adobedtm.com geostag.cardinalcommerce.com 1eafstag.cardinalcommerce.com geoapi.cardinalcommerce.com 1eafapi.cardinalcommerce.com songbird.cardinalcommerce.com includestest.ccdc02.com www.googleadservices.com www.google-analytics.com secure.authorize.net test.authorize.net www.paypal.com www.sandbox.paypal.com www.paypalobjects.com t.paypal.com s.ytimg.com video.google.com vimeo.com www.vimeo.com js.authorize.net jstest.authorize.net cdn-scripts.signifyd.com www.youtube.com js.braintreegateway.com *.avada.io 'self' 'unsafe-inline' 'unsafe-eval'; style-src getfirebug.com 'self' 'unsafe-inline'; object-src 'self' 'unsafe-inline'; media-src 'self' 'unsafe-inline'; manifest-src 'self' 'unsafe-inline'; connect-src geostag.cardinalcommerce.com geo.cardinalcommerce.com 1eafstag.cardinalcommerce.com 1eaf.cardinalcommerce.com centinelapistag.cardinalcommerce.com centinelapi.cardinalcommerce.com https://get.geojs.io *.avada.io 'self' 'unsafe-inline'; child-src 'self' 'unsafe-inline'; default-src 'self' 'unsafe-inline' 'unsafe-eval'; base-uri 'self' 'unsafe-inline'; X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Set-Cookie: PHPSESSID=9290rv3kmflrtb00e7k03fe2l7; expires=Fri, 04-Nov-2022 18:33:45 GMT; Max-Age=3600; path=/; domain=goutfits.com; SameSite=None; Secure Vary: User-Agent Upgrade: h2 Connection: Upgrade, close Location: https://goutfits.com/ X-UA-Compatible: IE=edge Content-Length: 0 Content-Type: text/html; charset=UTF-8