nginx
tcp/443 tcp/8443
The following CloudPanel instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since it could lead to RCE ( Remote Code Execution ). Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 8bb944476a146f564acb1065676cae8c22dc3d2e6a7521e86a7521e86a7521e8
Found vulnerable CloudPanel: Affected by CVE-2023-35885 Affected by CVE-2023-36630 Affected by CVE-2023-33747
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb57a94b6fdfe628d14fe628d14fe628d14fe628d14
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 Ubuntu-3 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
Open service 146.190.4.125:8443
2024-12-21 23:23
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Sat, 21 Dec 2024 23:23:39 GMT Location: /login Expires: Sat, 21 Dec 2024 23:23:39 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=bosgfa89bdpu8kk9k9tqs5ulqh; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-21 21:15
Open service 146.190.4.125:8443
2024-12-19 22:48
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Thu, 19 Dec 2024 22:48:27 GMT Location: /login Expires: Thu, 19 Dec 2024 22:48:27 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=smkvb659ubmov3kk12lkh4jakg; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-19 21:43
Open service 146.190.4.125:8443
2024-12-17 23:35
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Tue, 17 Dec 2024 23:35:37 GMT Location: /login Expires: Tue, 17 Dec 2024 23:35:37 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=jfjgi0vfbhnlnijo9kpgiv0gi2; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-17 22:02
Open service 146.190.4.125:443
2024-12-17 21:02
HTTP/1.1 400 Bad Request Server: nginx Date: Tue, 17 Dec 2024 21:02:46 GMT Content-Type: text/html Content-Length: 650 Connection: close Page title: 400 The plain HTTP request was sent to HTTPS port <html> <head><title>400 The plain HTTP request was sent to HTTPS port</title></head> <body> <center><h1>400 Bad Request</h1></center> <center>The plain HTTP request was sent to HTTPS port</center> <hr><center>nginx</center> </body> </html> <!-- a padding to disable MSIE and Chrome friendly error page --> <!-- a padding to disable MSIE and Chrome friendly error page --> <!-- a padding to disable MSIE and Chrome friendly error page --> <!-- a padding to disable MSIE and Chrome friendly error page --> <!-- a padding to disable MSIE and Chrome friendly error page --> <!-- a padding to disable MSIE and Chrome friendly error page -->
Open service 146.190.4.125:8443
2024-12-15 22:18
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Sun, 15 Dec 2024 22:19:02 GMT Location: /login Expires: Sun, 15 Dec 2024 22:19:02 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=tsgtp36r7bga1j4q42hpnpnq41; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-15 21:46
Open service 146.190.4.125:22
2024-12-13 22:27
Open service 146.190.4.125:8443
2024-12-13 21:26
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Fri, 13 Dec 2024 21:26:52 GMT Location: /login Expires: Fri, 13 Dec 2024 21:26:52 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=5mqsnf9ai5fk1h9v8d2mraipus; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-11 22:50
Open service 146.190.4.125:8443
2024-12-11 22:06
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Wed, 11 Dec 2024 22:06:42 GMT Location: /login Expires: Wed, 11 Dec 2024 22:06:42 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=ks78am68r2p8odp843esqdg867; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:8443
2024-12-01 22:19
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Sun, 01 Dec 2024 22:19:09 GMT Location: /login Expires: Sun, 01 Dec 2024 22:19:09 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=8q0u04tvspu990pmi5tcefgrkj; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-12-01 21:33
Open service 146.190.4.125:8443
2024-11-30 00:03
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Sat, 30 Nov 2024 00:03:56 GMT Location: /login Expires: Sat, 30 Nov 2024 00:03:56 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=9kefamr0fn1f6m6j1g5cuen6m8; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-11-29 21:21
Open service 146.190.4.125:8443
2024-11-27 21:55
HTTP/1.1 302 Found Server: nginx Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Cache-Control: max-age=0, must-revalidate, private Date: Wed, 27 Nov 2024 21:55:33 GMT Location: /login Expires: Wed, 27 Nov 2024 21:55:33 GMT Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax Set-Cookie: cloudpanel=kcol8gdpevq4anthbs3v4g16l4; path=/; secure; httponly; samesite=lax Page title: Redirecting to /login <!DOCTYPE html> <html> <head> <meta charset="UTF-8" /> <meta http-equiv="refresh" content="0;url='/login'" /> <title>Redirecting to /login</title> </head> <body> Redirecting to <a href="/login">/login</a>. </body> </html>
Open service 146.190.4.125:22
2024-11-27 21:14