nginx 1.20.1
tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 111.231.145.221:80
2024-12-22 00:58
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Sun, 22 Dec 2024 00:58:29 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNXYWDP1SCM6JSSSERFESNB","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNXYWDP1SCM6JSSSERFESNB X-Runtime: 0.018412 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-12-20 15:06
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Fri, 20 Dec 2024 15:06:17 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFJ9NT4815TN4EV0TSCGFHT6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFJ9NT4815TN4EV0TSCGFHT6 X-Runtime: 0.019257 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-20 00:30
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Fri, 20 Dec 2024 00:30:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGQHZS5XPSMTSA6Q0QAG4S6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGQHZS5XPSMTSA6Q0QAG4S6 X-Runtime: 0.019314 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-12-18 13:59
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Wed, 18 Dec 2024 13:59:41 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFD12DD9X08K8K9BPQSF6RH5","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFD12DD9X08K8K9BPQSF6RH5 X-Runtime: 0.018432 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-18 01:43
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Wed, 18 Dec 2024 01:43:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBPZ4R5PK2GDDNWRMKTR5ZK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBPZ4R5PK2GDDNWRMKTR5ZK X-Runtime: 0.018573 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-15 23:50
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Sun, 15 Dec 2024 23:50:07 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6BNCJDXNQCJHYS4HYDGG5X","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6BNCJDXNQCJHYS4HYDGG5X X-Runtime: 0.018340 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-14 00:04
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Sat, 14 Dec 2024 00:04:27 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF17P6DM8YK2KVTSSV52M0EP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF17P6DM8YK2KVTSSV52M0EP X-Runtime: 0.018420 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-12 00:59
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Thu, 12 Dec 2024 00:59:04 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEW60R7JDVCTZXAV37AZ4ZCY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEW60R7JDVCTZXAV37AZ4ZCY X-Runtime: 0.044890 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-12-02 13:07
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Mon, 02 Dec 2024 13:07:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE3QQHDHR5GAEWJ6NDKZXH09","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE3QQHDHR5GAEWJ6NDKZXH09 X-Runtime: 0.041762 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-12-02 01:31
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Mon, 02 Dec 2024 01:31:45 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE2FXD5CJ8SQGQ4XAESDD08Q","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE2FXD5CJ8SQGQ4XAESDD08Q X-Runtime: 0.043427 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-11-30 10:09
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Sat, 30 Nov 2024 10:09:39 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDY8R9HXW7WQD122W1KYXVEV","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDY8R9HXW7WQD122W1KYXVEV X-Runtime: 0.020925 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-11-30 00:52
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Sat, 30 Nov 2024 00:52:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDX8W56758AV5FQJTDMK9T8E","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDX8W56758AV5FQJTDMK9T8E X-Runtime: 0.019489 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-11-28 06:56
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Thu, 28 Nov 2024 06:56:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDRRX13YHKE5JW56BDBZ0SYP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDRRX13YHKE5JW56BDBZ0SYP X-Runtime: 0.069652 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80
2024-11-28 00:56
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Thu, 28 Nov 2024 00:56:14 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://111.231.145.221/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDR49GMZWYJPMCZD6CMS5F83","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDR49GMZWYJPMCZD6CMS5F83 X-Runtime: 0.018376 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://111.231.145.221/users/sign_in">redirected</a>.</body></html>
Open service 111.231.145.221:80 · git.ijzzn.com
2024-11-21 02:48
HTTP/1.1 302 Found Server: nginx/1.20.1 Date: Thu, 21 Nov 2024 02:48:45 GMT Content-Type: text/html; charset=utf-8 Content-Length: 100 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: http://git.ijzzn.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD69YFVXJCAQPCJSGG2VPG73","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD69YFVXJCAQPCJSGG2VPG73 X-Runtime: 0.036035 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="http://git.ijzzn.com/users/sign_in">redirected</a>.</body></html>