nginx
tcp/80
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c684e525d684e525dfb28aa85af66376aa4722af7dbf75351
Found 27 files trough .DS_Store spidering: /admin /admin/static /admin/static/css /admin/static/fonts /admin/static/imgs /admin/static/js /image /image/agent /image/diy /image/diy/article /image/diy/navbar /image/diy/window /image/payment /image/tabbar /image/verify /shop /shop/static /shop/static/css /shop/static/fonts /shop/static/iconfont /shop/static/img /shop/static/imgs /shop/static/js /shop/static/UE /supplier /temp /uploads
The Redis instance is open to the public.
This could result to data leak and code execution.
Severity: medium
Fingerprint: d606b92f1b5fdf18218cad2d218cad2d218cad2d218cad2d218cad2d218cad2d
Redis is open
Open service 120.27.195.119:80
2024-03-03 00:14
HTTP/1.1 200 OK Server: nginx Date: Sun, 03 Mar 2024 00:14:46 GMT Content-Type: text/html Content-Length: 138 Last-Modified: Thu, 30 Jun 2022 01:07:41 GMT Connection: close ETag: "62bcf75d-8a" Accept-Ranges: bytes Page title: 404 Not Found <html> <head><title>404 Not Found</title></head> <body> <center><h1>404 Not Found</h1></center> <hr><center>nginx</center> </body> </html>
Open service 120.27.195.119:22
2024-03-02 11:41
Open service 120.27.195.119:80
2024-03-01 19:02
HTTP/1.1 200 OK Server: nginx Date: Fri, 01 Mar 2024 19:02:05 GMT Content-Type: text/html Content-Length: 138 Last-Modified: Thu, 30 Jun 2022 01:07:41 GMT Connection: close ETag: "62bcf75d-8a" Accept-Ranges: bytes Page title: 404 Not Found <html> <head><title>404 Not Found</title></head> <body> <center><h1>404 Not Found</h1></center> <hr><center>nginx</center> </body> </html>