nginx
tcp/443 tcp/80
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-22 06:21
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 06:21:04 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPGDHZK542P5F0YC5FPZKYK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPGDHZK542P5F0YC5FPZKYK X-Runtime: 0.064727 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-22 00:54
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 00:54:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNXQCEGF2B021PTBJ2KWFT1","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNXQCEGF2B021PTBJ2KWFT1 X-Runtime: 0.026826 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-20 07:53
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 07:53:34 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFHGXF1R332MPE5Y26GBE0V0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFHGXF1R332MPE5Y26GBE0V0 X-Runtime: 0.029660 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-19 23:58
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 23:58:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGNQCABTQHMZ84YFZ4T55RM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGNQCABTQHMZ84YFZ4T55RM X-Runtime: 0.033954 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-18 08:40
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 08:40:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFCESSW7HCVXB96Y0XN4V6QH","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFCESSW7HCVXB96Y0XN4V6QH X-Runtime: 0.027796 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-17 22:03
HTTP/1.1 302 Found Server: nginx Date: Tue, 17 Dec 2024 22:04:01 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBACHMFTXY20KV8TZD5PT4H","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBACHMFTXY20KV8TZD5PT4H X-Runtime: 0.033918 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-16 04:23
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 Dec 2024 04:23:54 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6VAP0ZGV67XN9Q6K0CMXPM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6VAP0ZGV67XN9Q6K0CMXPM X-Runtime: 0.046311 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-15 21:45
HTTP/1.1 302 Found Server: nginx Date: Sun, 15 Dec 2024 21:45:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF64HYTADD0JFVVD87GBCKXM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF64HYTADD0JFVVD87GBCKXM X-Runtime: 0.028763 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-14 04:04
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 04:04:12 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1ND5KW8CQ04PW8MY4C2QKJ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1ND5KW8CQ04PW8MY4C2QKJ X-Runtime: 0.037810 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-13 21:58
HTTP/1.1 302 Found Server: nginx Date: Fri, 13 Dec 2024 21:58:29 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF10FH0MGT250WDR2JPXQJKJ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF10FH0MGT250WDR2JPXQJKJ X-Runtime: 0.029477 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-12 06:44
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 06:44:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEWSS73KQGHZREYGMWVRH8ZX","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEWSS73KQGHZREYGMWVRH8ZX X-Runtime: 0.039326 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-11 23:41
HTTP/1.1 302 Found Server: nginx Date: Wed, 11 Dec 2024 23:41:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEW1JS3WWQETWBJGZPQGNDQJ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEW1JS3WWQETWBJGZPQGNDQJ X-Runtime: 0.083256 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-12-03 01:43
HTTP/1.1 302 Found Server: nginx Date: Tue, 03 Dec 2024 01:43:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE52ZE2HBF3RJ067N5D8Y2KG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE52ZE2HBF3RJ067N5D8Y2KG X-Runtime: 0.032132 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-12-01 22:14
HTTP/1.1 302 Found Server: nginx Date: Sun, 01 Dec 2024 22:14:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE24M64XY1XMGG0GPDEDXGFS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE24M64XY1XMGG0GPDEDXGFS X-Runtime: 0.080836 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-11-30 20:16
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 20:16:29 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZBFDP4EH3YQ30ADKKVTQVK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZBFDP4EH3YQ30ADKKVTQVK X-Runtime: 0.074121 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-11-28 22:34
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 22:34:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDTEJRHB64WCZSF36VFAY4Q9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDTEJRHB64WCZSF36VFAY4Q9 X-Runtime: 0.032565 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443
2024-11-28 00:59
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 00:59:33 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://146.59.153.19/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDR4FJJX0DMHA1WD2ABQDD1A","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDR4FJJX0DMHA1WD2ABQDD1A X-Runtime: 0.030956 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://146.59.153.19/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-11-26 20:02
HTTP/1.1 302 Found Server: nginx Date: Tue, 26 Nov 2024 20:02:45 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDN13CW4RJB9TYB7V6HWTX00","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDN13CW4RJB9TYB7V6HWTX00 X-Runtime: 0.055955 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:80 · gitlab.crispy-medias.fr
2024-11-21 00:10
HTTP/1.1 301 Moved Permanently Server: nginx Date: Thu, 21 Nov 2024 00:10:53 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://gitlab.crispy-medias.fr:443/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-11-21 00:10
HTTP/1.1 302 Found Server: nginx Date: Thu, 21 Nov 2024 00:10:54 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD60XEKXG7GKYF1AA2JZHSJ7","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD60XEKXG7GKYF1AA2JZHSJ7 X-Runtime: 0.046007 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:443 · gitlab.crispy-medias.fr
2024-11-20 21:51
HTTP/1.1 302 Found Server: nginx Date: Wed, 20 Nov 2024 21:51:20 GMT Content-Type: text/html; charset=utf-8 Content-Length: 111 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.crispy-medias.fr/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD5RXX99Z4SWSGEK1WBPHP1W","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD5RXX99Z4SWSGEK1WBPHP1W X-Runtime: 0.027095 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.crispy-medias.fr/users/sign_in">redirected</a>.</body></html>
Open service 146.59.153.19:80
2024-11-20 18:09
HTTP/1.1 301 Moved Permanently Server: nginx Date: Wed, 20 Nov 2024 18:09:15 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://gitlab.crispy-medias.fr:443/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>