nginx 1.24.0
tcp/80
MySQL is currently open without authentication.
This results in all the database data made available publicly.
Severity: high
Fingerprint: cf350410ecceb5fd169edb18b54a444e89ac3b3eecdea2c9f770e07d4c8ffcaf
Databases: 73, row count: 4921, size: 3.3 MB Found table dukadelivery.dd_commentmeta with 0 records Found table dukadelivery.dd_comments with 0 records Found table dukadelivery.dd_links with 0 records Found table dukadelivery.dd_options with 134 records Found table dukadelivery.dd_postmeta with 2 records Found table dukadelivery.dd_posts with 3 records Found table dukadelivery.dd_term_relationships with 0 records Found table dukadelivery.dd_term_taxonomy with 0 records Found table dukadelivery.dd_termmeta with 0 records Found table dukadelivery.dd_terms with 0 records Found table dukadelivery.dd_usermeta with 14 records Found table dukadelivery.dd_users with 0 records Found table mysql.columns_priv with 0 records Found table mysql.component with 0 records Found table mysql.db with 2 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.global_grants with 125 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 965 records Found table mysql.help_relation with 1506 records Found table mysql.help_topic with 1225 records Found table mysql.innodb_index_stats with 481 records Found table mysql.innodb_table_stats with 38 records Found table mysql.password_history with 0 records Found table mysql.plugin with 1 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_configuration_version with 1 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.role_edges with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 6 records Found table pesaexpress.px_commentmeta with 0 records Found table pesaexpress.px_comments with 0 records Found table pesaexpress.px_links with 0 records Found table pesaexpress.px_options with 134 records Found table pesaexpress.px_postmeta with 2 records Found table pesaexpress.px_posts with 3 records Found table pesaexpress.px_term_relationships with 0 records Found table pesaexpress.px_term_taxonomy with 0 records Found table pesaexpress.px_termmeta with 0 records Found table pesaexpress.px_terms with 0 records Found table pesaexpress.px_usermeta with 14 records Found table pesaexpress.px_users with 0 records Found table ubiquiti.ub_commentmeta with 0 records Found table ubiquiti.ub_comments with 0 records Found table ubiquiti.ub_links with 0 records Found table ubiquiti.ub_options with 149 records Found table ubiquiti.ub_postmeta with 17 records Found table ubiquiti.ub_posts with 12 records Found table ubiquiti.ub_term_relationships with 0 records Found table ubiquiti.ub_term_taxonomy with 0 records Found table ubiquiti.ub_termmeta with 0 records Found table ubiquiti.ub_terms with 0 records Found table ubiquiti.ub_usermeta with 17 records Found table ubiquiti.ub_users with 0 records
Severity: high
Fingerprint: cf350410ecceb5fd5087cda7e9e400e30092ef436bba26b83695277c61d10672
Databases: 73, row count: 4618, size: 3.3 MB Found table mysql.innodb_table_stats with 38 records Found table mysql.innodb_index_stats with 430 records Found table mysql.replication_group_configuration_version with 1 records Found table pesaexpress.px_users with 0 records Found table pesaexpress.px_usermeta with 14 records Found table pesaexpress.px_termmeta with 0 records Found table pesaexpress.px_terms with 0 records Found table pesaexpress.px_term_taxonomy with 0 records Found table pesaexpress.px_term_relationships with 0 records Found table pesaexpress.px_commentmeta with 0 records Found table pesaexpress.px_comments with 0 records Found table pesaexpress.px_links with 0 records Found table pesaexpress.px_options with 134 records Found table pesaexpress.px_postmeta with 2 records Found table pesaexpress.px_posts with 3 records Found table dukadelivery.dd_users with 0 records Found table dukadelivery.dd_usermeta with 14 records Found table dukadelivery.dd_termmeta with 0 records Found table dukadelivery.dd_terms with 0 records Found table dukadelivery.dd_term_taxonomy with 0 records Found table dukadelivery.dd_term_relationships with 0 records Found table dukadelivery.dd_commentmeta with 0 records Found table dukadelivery.dd_comments with 0 records Found table dukadelivery.dd_links with 0 records Found table dukadelivery.dd_options with 134 records Found table dukadelivery.dd_postmeta with 2 records Found table dukadelivery.dd_posts with 3 records Found table ubiquiti.ub_users with 0 records Found table ubiquiti.ub_usermeta with 17 records Found table ubiquiti.ub_termmeta with 0 records Found table ubiquiti.ub_terms with 0 records Found table ubiquiti.ub_term_taxonomy with 0 records Found table ubiquiti.ub_term_relationships with 0 records Found table ubiquiti.ub_commentmeta with 0 records Found table ubiquiti.ub_comments with 0 records Found table ubiquiti.ub_links with 0 records Found table ubiquiti.ub_options with 149 records Found table ubiquiti.ub_postmeta with 17 records Found table ubiquiti.ub_posts with 12 records Found table mysql.general_log with 2 records Found table mysql.slow_log with 2 records Found table mysql.component with 0 records Found table mysql.columns_priv with 0 records Found table mysql.db with 2 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.global_grants with 125 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 1016 records Found table mysql.help_relation with 1537 records Found table mysql.help_topic with 891 records Found table mysql.plugin with 1 records Found table mysql.password_history with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.role_edges with 0 records Found table mysql.servers with 0 records Found table mysql.server_cost with 6 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.func with 0 records Found table mysql.gtid_executed with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.procs_priv with 0 records Found table mysql.user with 6 records Found table mysql.time_zone with 0 records
Severity: high
Fingerprint: cf350410ecceb5fd54153a08b29b0e84927f86a68468541985afe4d778a9b42f
Databases: 73, row count: 4613, size: 3.3 MB Found table mysql.innodb_table_stats with 38 records Found table mysql.innodb_index_stats with 364 records Found table mysql.replication_group_configuration_version with 1 records Found table pesaexpress.px_users with 0 records Found table pesaexpress.px_usermeta with 14 records Found table pesaexpress.px_termmeta with 0 records Found table pesaexpress.px_terms with 0 records Found table pesaexpress.px_term_taxonomy with 0 records Found table pesaexpress.px_term_relationships with 0 records Found table pesaexpress.px_commentmeta with 0 records Found table pesaexpress.px_comments with 0 records Found table pesaexpress.px_links with 0 records Found table pesaexpress.px_options with 129 records Found table pesaexpress.px_postmeta with 2 records Found table pesaexpress.px_posts with 3 records Found table dukadelivery.dd_users with 0 records Found table dukadelivery.dd_usermeta with 14 records Found table dukadelivery.dd_termmeta with 0 records Found table dukadelivery.dd_terms with 0 records Found table dukadelivery.dd_term_taxonomy with 0 records Found table dukadelivery.dd_term_relationships with 0 records Found table dukadelivery.dd_commentmeta with 0 records Found table dukadelivery.dd_comments with 0 records Found table dukadelivery.dd_links with 0 records Found table dukadelivery.dd_options with 134 records Found table dukadelivery.dd_postmeta with 2 records Found table dukadelivery.dd_posts with 3 records Found table ubiquiti.ub_users with 0 records Found table ubiquiti.ub_usermeta with 17 records Found table ubiquiti.ub_termmeta with 0 records Found table ubiquiti.ub_terms with 0 records Found table ubiquiti.ub_term_taxonomy with 0 records Found table ubiquiti.ub_term_relationships with 0 records Found table ubiquiti.ub_commentmeta with 0 records Found table ubiquiti.ub_comments with 0 records Found table ubiquiti.ub_links with 0 records Found table ubiquiti.ub_options with 149 records Found table ubiquiti.ub_postmeta with 17 records Found table ubiquiti.ub_posts with 12 records Found table mysql.general_log with 2 records Found table mysql.slow_log with 2 records Found table mysql.component with 0 records Found table mysql.columns_priv with 0 records Found table mysql.db with 2 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.global_grants with 125 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 939 records Found table mysql.help_relation with 1743 records Found table mysql.help_topic with 828 records Found table mysql.plugin with 1 records Found table mysql.password_history with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.role_edges with 0 records Found table mysql.servers with 0 records Found table mysql.server_cost with 6 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.func with 0 records Found table mysql.gtid_executed with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.procs_priv with 0 records Found table mysql.user with 6 records Found table mysql.time_zone with 0 records
Severity: high
Fingerprint: cf350410ecceb5fd3a70c54c66a0b85aa6a65042b6899bcd6449a3efe318be4b
Databases: 73, row count: 4873, size: 3.3 MB Found table dukadelivery.dd_commentmeta with 0 records Found table dukadelivery.dd_comments with 0 records Found table dukadelivery.dd_links with 0 records Found table dukadelivery.dd_options with 129 records Found table dukadelivery.dd_postmeta with 2 records Found table dukadelivery.dd_posts with 3 records Found table dukadelivery.dd_term_relationships with 0 records Found table dukadelivery.dd_term_taxonomy with 0 records Found table dukadelivery.dd_termmeta with 0 records Found table dukadelivery.dd_terms with 0 records Found table dukadelivery.dd_usermeta with 14 records Found table dukadelivery.dd_users with 0 records Found table mysql.columns_priv with 0 records Found table mysql.component with 0 records Found table mysql.db with 2 records Found table mysql.default_roles with 0 records Found table mysql.engine_cost with 2 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.global_grants with 111 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 53 records Found table mysql.help_keyword with 1016 records Found table mysql.help_relation with 2156 records Found table mysql.help_topic with 570 records Found table mysql.innodb_index_stats with 430 records Found table mysql.innodb_table_stats with 38 records Found table mysql.password_history with 0 records Found table mysql.plugin with 1 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.replication_asynchronous_connection_failover with 0 records Found table mysql.replication_asynchronous_connection_failover_managed with 0 records Found table mysql.replication_group_configuration_version with 1 records Found table mysql.replication_group_member_actions with 2 records Found table mysql.role_edges with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 6 records Found table pesaexpress.px_commentmeta with 0 records Found table pesaexpress.px_comments with 0 records Found table pesaexpress.px_links with 0 records Found table pesaexpress.px_options with 129 records Found table pesaexpress.px_postmeta with 2 records Found table pesaexpress.px_posts with 3 records Found table pesaexpress.px_term_relationships with 0 records Found table pesaexpress.px_term_taxonomy with 0 records Found table pesaexpress.px_termmeta with 0 records Found table pesaexpress.px_terms with 0 records Found table pesaexpress.px_usermeta with 14 records Found table pesaexpress.px_users with 0 records Found table ubiquiti.ub_commentmeta with 0 records Found table ubiquiti.ub_comments with 0 records Found table ubiquiti.ub_links with 0 records Found table ubiquiti.ub_options with 135 records Found table ubiquiti.ub_postmeta with 19 records Found table ubiquiti.ub_posts with 3 records Found table ubiquiti.ub_term_relationships with 0 records Found table ubiquiti.ub_term_taxonomy with 0 records Found table ubiquiti.ub_termmeta with 0 records Found table ubiquiti.ub_terms with 0 records Found table ubiquiti.ub_usermeta with 19 records Found table ubiquiti.ub_users with 0 records
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947e78dd08e645819ded03389ab1c43704fcdf20c0b3c5a1f89f2aa6a0
HTTP/1.1 200 OK Date: Sat, 06 May 2023 00:25:44 GMT Server: Apache/2.4.41 (Ubuntu) Last-Modified: Tue, 14 Mar 2023 17:27:06 GMT ETag: "f77-5f6df8961f34c" Accept-Ranges: bytes Content-Length: 3959 Vary: Accept-Encoding Connection: close Content-Type: text/html Page title: P(12)hone Book <!doctype html> <html lang="en"> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta name="description" content=> <meta name="author" content="Troy, Gil, Donovan, James, Logan, and Colton"> <meta name="generator" content=> <title>P(12)hone Book</title> <link rel="icon" type="image/x-icon" href="https://codegojolt.xyz/resources/favicon.ico"> <link href="https://cdn.jsdelivr.net/npm/bootstrap@5.3.0-alpha1/dist/css/bootstrap.min.css" rel="stylesheet" integrity="sha384-GLhlTQ8iRABdZLl6O3oVMWSktQOp6b7In1Zl3/Jr59b6EGGoI1aFkw7cmDA6j6gD" crossorigin="anonymous"> <script defer src="https://cdn.jsdelivr.net/npm/bootstrap@5.3.0-alpha1/dist/js/bootstrap.bundle.min.js" integrity="sha384-w76AqPfDkMBDXo30jS1Sgez6pr3x5MlQ1ZAGC+nuZB+EYdgRZgiwxhTBTkF7CXvN" crossorigin="anonymous"></script> <script defer src="https://ajax.googleapis.com/ajax/libs/jquery/3.6.3/jquery.min.js"></script> <script defer src="../js/signin.js"></script> <!-- CSS Template --> <link href="css/sign-in.css" rel="stylesheet"> </head> <!-- Logo/Sign in inputs/Submit --> <body class="text-center"> <main class="form-signin w-100 m-auto"> <form class="needs-validation" id="verification" action="javascript:signInFunc()"> <!-- action="./home/main.html"> held for debugging for the time being--> <div style="height: 80px"> <h1 class="h1 mb-80 fw-normal">Phone Book</h1> </div> <img class="mb-4" src="./resources/logos/Free-Phone-Clip-Art.png" alt="" width="96" height="96"> <h1 class="h3 mb-3 fw-normal">Please sign in</h1> <div class="form-floating"> <input type="email" class="form-control" id="floatingEmail" placeholder="name@domain.com" required> <label for="floatingEmail">Email address</label> <!-- <div class="valid-feedback"> Valid Email </div>--> </div> <div class="form-floating"> <input type="password" class="form-control" id="floatingPassword" placeholder="Password" required> <label for="floatingPassword">Password</label> <!--<div class="invalid-feedback"> Invalid Password </div>--> </div> <button type="submit" class="w-100 btn btn-lg btn-primary mb-1" data-toggle="tooltip" data-placement="bottom" title="Submit"> Sign in </button> <a href="./signup.html" class="btn btn-link mb-4" role="button" data-toggle="tooltip" data-placement="bottom" title="Create account">Dont have an account yet?</a> </div> <!-- About modal --> <div> <button type="button" class="btn btn-secondary" data-bs-toggle="modal" data-bs-target="#aboutModal" data-toggle="tooltip" data-placement="top" title="About"> About </button> <div class="modal fade" id="aboutModal" tabindex="-1" role="dialog" aria-labelledby="aboutModalLabel" aria-hidden="true"> <div class="modal-dialog" role="document"> <div class="modal-content"> <div class="modal-header"> <h5 class="modal-title" id="aboutModalLabel">About</h5> <button type="button" class="close" data-bs-dismiss="modal" aria-label="Close"> <span aria-hidden="true">×</span> </button> </div> <div class="modal-body"> This website was created for a group project for COP4431 at UCF by Troy, Gil, Donovan, James, Logan, and Colton. </div> <div class="modal-footer"> <button type="button" class="btn btn-secondary" data-bs-dismiss="modal">Close</button> </div> </div> </div> </div> <p class="mt-3 mb-3 text-muted">© 2022-2022</p> </form> </main> </body> </html> [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/cop340212/group12 fetch = +refs/heads/*:refs/remotes/origin/* [branch "main"] remote = origin merge = refs/heads/main
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65228c8e1a39
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/cop340212/group12 fetch = +refs/heads/*:refs/remotes/origin/* [branch "main"] remote = origin merge = refs/heads/main
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65228c8e1a39
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/cop340212/group12 fetch = +refs/heads/*:refs/remotes/origin/* [branch "main"] remote = origin merge = refs/heads/main
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652258eb98d4
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@github.com:cop340212/group12.git fetch = +refs/heads/*:refs/remotes/origin/*
Open service 147.182.238.9:3306
2024-06-01 21:39
MySQL detected
Open service 147.182.238.9:3306
2024-05-31 21:32
MySQL detected
Open service 147.182.238.9:22
2024-05-31 11:59
Open service 147.182.238.9:80
2024-05-31 01:23
HTTP/1.1 200 OK Server: nginx/1.24.0 (Ubuntu) Date: Fri, 31 May 2024 01:23:18 GMT Content-Type: text/html Content-Length: 615 Last-Modified: Tue, 26 Dec 2023 05:02:34 GMT Connection: close ETag: "658a5e6a-267" Accept-Ranges: bytes Page title: Welcome to nginx! <!DOCTYPE html> <html> <head> <title>Welcome to nginx!</title> <style> html { color-scheme: light dark; } body { width: 35em; margin: 0 auto; font-family: Tahoma, Verdana, Arial, sans-serif; } </style> </head> <body> <h1>Welcome to nginx!</h1> <p>If you see this page, the nginx web server is successfully installed and working. Further configuration is required.</p> <p>For online documentation and support please refer to <a href="http://nginx.org/">nginx.org</a>.<br/> Commercial support is available at <a href="http://nginx.com/">nginx.com</a>.</p> <p><em>Thank you for using nginx.</em></p> </body> </html>
Open service 147.182.238.9:3306
2024-05-30 23:14
MySQL detected
Open service 147.182.238.9:3306
2024-05-29 21:15
MySQL detected
Open service 147.182.238.9:3306
2024-05-28 22:08
MySQL detected
Open service 147.182.238.9:3306
2024-05-27 21:27
MySQL detected
Open service 147.182.238.9:3306
2024-05-26 20:30
MySQL detected
Open service 147.182.238.9:3306
2024-05-25 22:41
MySQL detected
Open service 147.182.238.9:22
2024-05-25 14:59
Open service 147.182.238.9:3306
2024-05-25 10:58
MySQL detected
Open service 147.182.238.9:3306
2024-05-24 22:00
MySQL detected
Open service 147.182.238.9:3306
2024-05-23 20:09
MySQL detected
Open service 147.182.238.9:3306
2024-05-22 20:03
MySQL detected