Kestrel
tcp/5000
nginx 1.20.1
tcp/8088
MySQL is currently open without authentication.
This results in all the database data made available publicly.
Severity: high
Fingerprint: cf350410ecceb5fd02ca59f1d3b79f043bc00eeda9dc2fe5cc2038e16d04f3f7
Databases: 117, row count: 7825867, size: 77.5 GB Found table canal_manager.canal_adapter_config with 0 records Found table canal_manager.canal_cluster with 0 records Found table canal_manager.canal_config with 1 records Found table canal_manager.canal_instance_config with 1 records Found table canal_manager.canal_node_server with 1 records Found table canal_manager.canal_user with 1 records Found table data_collection.allsourcecode20230818 with 858 records Found table data_collection.analysis_record with 5007 records Found table data_collection.analysis_report with 1172 records Found table data_collection.country with 246 records Found table data_collection.errorid0802 with 46215 records Found table data_collection.keyword with 4869 records Found table data_collection.keyword_1 with 2628 records Found table data_collection.push_info with 299 records Found table data_collection.push_rule with 3 records Found table data_collection.report20231103 with 1642 records Found table data_collection.reportinfo with 7746 records Found table data_collection.server with 4 records Found table data_collection.source with 1253 records Found table data_collection.source_unit with 9 records Found table data_collection.task with 5573 records Found table data_collection.task_common_data with 3657750 records Found table data_collection.task_common_data_delete with 48796 records Found table data_collection.task_common_data_test with 28586 records Found table data_collection.task_data_table with 9 records Found table data_collection.task_data_table_army with 3034 records Found table data_collection.task_data_table_dhsp_new_trend with 1266 records Found table data_collection.task_data_table_gnbz with 0 records Found table data_collection.task_data_table_kjbg with 121375 records Found table data_collection.task_data_table_tds with 3265165 records Found table data_collection.task_data_table_tds_person with 20540 records Found table data_collection.task_data_table_tds_test with 1333 records Found table data_collection.task_data_table_tds_yangli with 18 records Found table data_collection.task_data_type with 10 records Found table data_collection.task_data_type_field with 239 records Found table data_collection.task_field with 46794 records Found table data_collection.task_history with 430751 records Found table data_collection.tempmd5 with 2630 records Found table data_collection.tempnofile_standard_20230914 with 1643 records Found table data_collection.test with 10 records Found table data_collection.user with 21 records Found table data_collection.user_log with 113662 records Found table data_collection.user_right with 34 records Found table data_collection.view_task with 34 records Found table data_collection_hbsqbs.analysis_record with 7 records Found table data_collection_hbsqbs.analysis_report with 6 records Found table data_collection_hbsqbs.country with 1 records Found table data_collection_hbsqbs.push_info with 0 records Found table data_collection_hbsqbs.push_rule with 0 records Found table data_collection_hbsqbs.server with 1 records Found table data_collection_hbsqbs.source with 6 records Found table data_collection_hbsqbs.source_unit with 1 records Found table data_collection_hbsqbs.task with 6 records Found table data_collection_hbsqbs.task_common_data with 324 records Found table data_collection_hbsqbs.task_common_data_test with 5 records Found table data_collection_hbsqbs.task_data_table with 1 records Found table data_collection_hbsqbs.task_data_table_example with 109 records Found table data_collection_hbsqbs.task_data_type with 1 records Found table data_collection_hbsqbs.task_data_type_field with 21 records Found table data_collection_hbsqbs.task_field with 34 records Found table data_collection_hbsqbs.task_history with 11 records Found table data_collection_hbsqbs.user with 3 records Found table data_collection_hbsqbs.user_log with 189 records Found table data_collection_hbsqbs.user_right with 34 records Found table data_collection_hbsqbs.view_task with 34 records Found table data_collection_wjgcdx.analysis_record with 2 records Found table data_collection_wjgcdx.analysis_report with 2 records Found table data_collection_wjgcdx.country with 246 records Found table data_collection_wjgcdx.push_info with 0 records Found table data_collection_wjgcdx.push_rule with 0 records Found table data_collection_wjgcdx.server with 1 records Found table data_collection_wjgcdx.source with 2 records Found table data_collection_wjgcdx.source_unit with 1 records Found table data_collection_wjgcdx.task with 4 records Found table data_collection_wjgcdx.task_common_data with 20 records Found table data_collection_wjgcdx.task_common_data_test with 10 records Found table data_collection_wjgcdx.task_data_table with 1 records Found table data_collection_wjgcdx.task_data_table_anti with 2 records Found table data_collection_wjgcdx.task_data_type with 1 records Found table data_collection_wjgcdx.task_data_type_field with 23 records Found table data_collection_wjgcdx.task_field with 14 records Found table data_collection_wjgcdx.task_history with 1 records Found table data_collection_wjgcdx.user with 1 records Found table data_collection_wjgcdx.user_log with 170 records Found table data_collection_wjgcdx.user_right with 34 records Found table data_collection_wjgcdx.view_task with 34 records Found table mysql.columns_priv with 0 records Found table mysql.db with 2 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 798 records Found table mysql.help_relation with 469 records Found table mysql.help_topic with 605 records Found table mysql.innodb_index_stats with 1210 records Found table mysql.innodb_table_stats with 85 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 48 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 4 records
Severity: high
Fingerprint: cf350410ecceb5fd683294c7fcb8f42afa06be3f0e8f074fc6df0c6b756861b5
Databases: 117, row count: 6395841, size: 75.6 GB Found table canal_manager.canal_adapter_config with 0 records Found table canal_manager.canal_cluster with 0 records Found table canal_manager.canal_config with 1 records Found table canal_manager.canal_instance_config with 1 records Found table canal_manager.canal_node_server with 1 records Found table canal_manager.canal_user with 1 records Found table data_collection.allsourcecode20230818 with 858 records Found table data_collection.analysis_record with 5007 records Found table data_collection.analysis_report with 1172 records Found table data_collection.country with 246 records Found table data_collection.errorid0802 with 46215 records Found table data_collection.keyword with 4869 records Found table data_collection.keyword_1 with 2628 records Found table data_collection.push_info with 299 records Found table data_collection.push_rule with 3 records Found table data_collection.report20231103 with 1642 records Found table data_collection.reportinfo with 7746 records Found table data_collection.server with 4 records Found table data_collection.source with 1253 records Found table data_collection.source_unit with 9 records Found table data_collection.task with 5567 records Found table data_collection.task_common_data with 3619918 records Found table data_collection.task_common_data_delete with 48796 records Found table data_collection.task_common_data_test with 28606 records Found table data_collection.task_data_table with 9 records Found table data_collection.task_data_table_army with 3034 records Found table data_collection.task_data_table_dhsp_new_trend with 1266 records Found table data_collection.task_data_table_gnbz with 0 records Found table data_collection.task_data_table_kjbg with 121375 records Found table data_collection.task_data_table_tds with 1869889 records Found table data_collection.task_data_table_tds_person with 20540 records Found table data_collection.task_data_table_tds_test with 1330 records Found table data_collection.task_data_table_tds_yangli with 18 records Found table data_collection.task_data_type with 10 records Found table data_collection.task_data_type_field with 239 records Found table data_collection.task_field with 46744 records Found table data_collection.task_history with 434870 records Found table data_collection.tempmd5 with 2630 records Found table data_collection.tempnofile_standard_20230914 with 1643 records Found table data_collection.test with 10 records Found table data_collection.user with 21 records Found table data_collection.user_log with 112664 records Found table data_collection.user_right with 34 records Found table data_collection.view_task with 34 records Found table data_collection_hbsqbs.analysis_record with 7 records Found table data_collection_hbsqbs.analysis_report with 6 records Found table data_collection_hbsqbs.country with 1 records Found table data_collection_hbsqbs.push_info with 0 records Found table data_collection_hbsqbs.push_rule with 0 records Found table data_collection_hbsqbs.server with 1 records Found table data_collection_hbsqbs.source with 6 records Found table data_collection_hbsqbs.source_unit with 1 records Found table data_collection_hbsqbs.task with 6 records Found table data_collection_hbsqbs.task_common_data with 324 records Found table data_collection_hbsqbs.task_common_data_test with 5 records Found table data_collection_hbsqbs.task_data_table with 1 records Found table data_collection_hbsqbs.task_data_table_example with 109 records Found table data_collection_hbsqbs.task_data_type with 1 records Found table data_collection_hbsqbs.task_data_type_field with 21 records Found table data_collection_hbsqbs.task_field with 34 records Found table data_collection_hbsqbs.task_history with 11 records Found table data_collection_hbsqbs.user with 3 records Found table data_collection_hbsqbs.user_log with 189 records Found table data_collection_hbsqbs.user_right with 34 records Found table data_collection_hbsqbs.view_task with 34 records Found table data_collection_wjgcdx.analysis_record with 2 records Found table data_collection_wjgcdx.analysis_report with 2 records Found table data_collection_wjgcdx.country with 246 records Found table data_collection_wjgcdx.push_info with 0 records Found table data_collection_wjgcdx.push_rule with 0 records Found table data_collection_wjgcdx.server with 1 records Found table data_collection_wjgcdx.source with 2 records Found table data_collection_wjgcdx.source_unit with 1 records Found table data_collection_wjgcdx.task with 4 records Found table data_collection_wjgcdx.task_common_data with 20 records Found table data_collection_wjgcdx.task_common_data_test with 10 records Found table data_collection_wjgcdx.task_data_table with 1 records Found table data_collection_wjgcdx.task_data_table_anti with 2 records Found table data_collection_wjgcdx.task_data_type with 1 records Found table data_collection_wjgcdx.task_data_type_field with 23 records Found table data_collection_wjgcdx.task_field with 14 records Found table data_collection_wjgcdx.task_history with 1 records Found table data_collection_wjgcdx.user with 1 records Found table data_collection_wjgcdx.user_log with 170 records Found table data_collection_wjgcdx.user_right with 34 records Found table data_collection_wjgcdx.view_task with 34 records Found table mysql.columns_priv with 0 records Found table mysql.db with 2 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 40 records Found table mysql.help_keyword with 798 records Found table mysql.help_relation with 469 records Found table mysql.help_topic with 605 records Found table mysql.innodb_index_stats with 1210 records Found table mysql.innodb_table_stats with 85 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 48 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 4 records
Open service 113.204.228.122:8088
2024-06-13 12:42
HTTP/1.1 200 OK Server: nginx/1.20.1 Date: Thu, 13 Jun 2024 12:42:06 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Page title: SmartDesk <!DOCTYPE html> <html> <head> <meta name="viewport" content="width=device-width" /> <title>SmartDesk</title> <script src="/Content/scripts/jquery/jquery-1.10.2.min.js"></script> <link href="/Content/styles/learun-login.css" rel="stylesheet" /> <link href="/Content/styles/font-awesome.min.css" rel="stylesheet" /> <script src="/Content/scripts/plugins/jquery.md5.js"></script> <script src="/Content/scripts/plugins/cookie/jquery.cookie.js"></script> <script src="/Content/scripts/plugins/dialog/dialog.js"></script> <script src="/Content/scripts/utils/learun-ui.js"></script> <script src="/Content/scripts/plugins/validator/validator.js"></script> <script src="/Content/scripts/plugins/tipso.min.js"></script> <script src="/Content/scripts/utils/high-ui.js"></script> <script src="/Content/scripts/signalr/signalr.min.js"></script> <script> var customizationdata = JSON.parse("[{"OrgName":"jxmz","IfCustomize":1,"OrderButton":0, "OrderSortname":0,"HeadPhoneBoxHide":0,"HeadPhoneNoticeHide":0,"AdminDefaultDesktopAuto_HideSet": 0,"DialoutTaskClientInfo_HideSet":0,"Login_PhoneNo": 0,"ProjectDataItem": 0,"JinMaoImportOtion":0, "GanZhouFaYuanModifiyFiledName": 1, "CallManageTaskCallRecodInfo": 1,"CallcenterCallOpenMore":1}]".replace(/"/g, "\"")); var LoginStartValidationCode = "1"; var LoginStartQRCode = "1"; var LoginCompanyNameLink = "http://www.highhonor.com/"; var LoginCompanyName = "上海汉傲电信科技有限公司出品"; var LoginClientDownloadFileName = "下载客户端软件"; var LogHighUItheme = "5"; </script> <script> var contentPath = ''.substr(0, ''.length - 1); var isIE = !!window.ActiveXObject; var isIE6 = isIE && !window.XMLHttpRequest; if (isIE6) { window.location.href = contentPath + "/Error/ErrorBrowser"; } function getParam(name) { var reg = new RegExp("(^|&)" + name + "=([^&]*)(&|$)", "i"); var r = window.location.search.substr(1).match(reg); if (r != null) return unescape(r[2]); return null; } //回车键 document.onkeydown = function (e) { if (!e) e = window.event; if ((e.keyCode || e.which) == 13) { var btlogin = document.getElementById("btnlogin"); btnlogin.click(); } } //初始化 $(function () { if (LoginStartQRCode == "1") $(".weixin").hide(); if (LoginStartValidationCode == "1") $("#verifycodeDd").hide(); var lcn = $("#LoginCompanyName"); lcn.attr("href", LoginCompanyNameLink); lcn.html(LoginCompanyName); $("#downloadfile").html(LoginClientDownloadFileName); //$.getcustomizationdata(); //主题风格 //var learn_UItheme = top.$.cookie('learn_UItheme'); $("#UItheme").val(LogHighUItheme); top.$.cookie('learn_UItheme', LogHighUItheme, { path: "/", expires: 30 }); $('#UItheme').on('change', function () { top.$.cookie('learn_UItheme', $(this).val(), { path: "/", expires: 30 }); }); $("#imsgtalk").click(function () { //window.open("/ChatManage/Youke/Index?oid=9698e2b4-0dd9-4d40-8ef5-9699bb135826"); }); //$(".wrap").css("margin-top", ($(window).height() - $(".wrap").height()) / 2 - 35); //$(window).resize(function (e) { // $(".wrap").css("margin-top", ($(window).height() - $(".wrap").height()) / 2 - 35); // e.stopPropagation(); //}); //错误提示 if (top.$.cookie('HH_login_error') != null)
Open service 113.204.228.122:5000
2024-06-02 18:48
HTTP/1.1 200 OK Connection: close Date: Sun, 02 Jun 2024 18:48:37 GMT Content-Type: text/html; charset=utf-8 Server: Kestrel Transfer-Encoding: chunked Page title: SmartDesk <!DOCTYPE html> <html> <head> <meta name="viewport" content="width=device-width" /> <title>SmartDesk</title> <script src="/Content/scripts/jquery/jquery-1.10.2.min.js"></script> <link href="/Content/styles/learun-login.css" rel="stylesheet" /> <link href="/Content/styles/font-awesome.min.css" rel="stylesheet" /> <script src="/Content/scripts/plugins/jquery.md5.js"></script> <script src="/Content/scripts/plugins/cookie/jquery.cookie.js"></script> <script src="/Content/scripts/plugins/dialog/dialog.js"></script> <script src="/Content/scripts/utils/learun-ui.js"></script> <script src="/Content/scripts/plugins/validator/validator.js"></script> <script src="/Content/scripts/plugins/tipso.min.js"></script> <script src="/Content/scripts/utils/high-ui.js"></script> <script src="/Content/scripts/signalr/signalr.min.js"></script> <script> var customizationdata = JSON.parse("[{"OrgName":"jxmz","IfCustomize":1,"OrderButton":0, "OrderSortname":0,"HeadPhoneBoxHide":0,"HeadPhoneNoticeHide":0,"AdminDefaultDesktopAuto_HideSet": 0,"DialoutTaskClientInfo_HideSet":0,"Login_PhoneNo": 0,"ProjectDataItem": 0,"JinMaoImportOtion":0, "GanZhouFaYuanModifiyFiledName": 1, "CallManageTaskCallRecodInfo": 1,"CallcenterCallOpenMore":1}]".replace(/"/g, "\"")); var LoginStartValidationCode = "1"; var LoginStartQRCode = "1"; var LoginCompanyNameLink = "http://www.highhonor.com/"; var LoginCompanyName = "上海汉傲电信科技有限公司出品"; var LoginClientDownloadFileName = "下载客户端软件"; var LogHighUItheme = "5"; </script> <script> var contentPath = ''.substr(0, ''.length - 1); var isIE = !!window.ActiveXObject; var isIE6 = isIE && !window.XMLHttpRequest; if (isIE6) { window.location.href = contentPath + "/Error/ErrorBrowser"; } function getParam(name) { var reg = new RegExp("(^|&)" + name + "=([^&]*)(&|$)", "i"); var r = window.location.search.substr(1).match(reg); if (r != null) return unescape(r[2]); return null; } //回车键 document.onkeydown = function (e) { if (!e) e = window.event; if ((e.keyCode || e.which) == 13) { var btlogin = document.getElementById("btnlogin"); btnlogin.click(); } } //初始化 $(function () { if (LoginStartQRCode == "1") $(".weixin").hide(); if (LoginStartValidationCode == "1") $("#verifycodeDd").hide(); var lcn = $("#LoginCompanyName"); lcn.attr("href", LoginCompanyNameLink); lcn.html(LoginCompanyName); $("#downloadfile").html(LoginClientDownloadFileName); //$.getcustomizationdata(); //主题风格 //var learn_UItheme = top.$.cookie('learn_UItheme'); $("#UItheme").val(LogHighUItheme); top.$.cookie('learn_UItheme', LogHighUItheme, { path: "/", expires: 30 }); $('#UItheme').on('change', function () { top.$.cookie('learn_UItheme', $(this).val(), { path: "/", expires: 30 }); }); $("#imsgtalk").click(function () { //window.open("/ChatManage/Youke/Index?oid=9698e2b4-0dd9-4d40-8ef5-9699bb135826"); }); //$(".wrap").css("margin-top", ($(window).height() - $(".wrap").height()) / 2 - 35); //$(window).resize(function (e) { // $(".wrap").css("margin-top", ($(window).height() - $(".wrap").height()) / 2 - 35); // e.stopPropagation(); //}); //错误提示 if (top.$.cookie('HH_login_error') != null)