nginx 1.14.1
tcp/443
The Kafka instance is available to the public without authentication.
An attacker could connect to the queue to extract private/confidential information in real-time.
Fingerprint: 43224224eeda9da960defeaaee22725a78a30e1a82b8c032baf40e21baf40e21
NoAuth Found topic tenxcloud1 Found topic __consumer_offsets Found topic picc Found topic tenxcloud
Fingerprint: 43224224eeda9da960defeaa8e6bc0c26d0d0b91f9ece525850d9955850d9955
NoAuth Found topic picc Found topic tenxcloud Found topic tenxcloud1 Found topic __consumer_offsets
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522931f25ab
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true ignorecase = true precomposeunicode = true [remote "origin"] url = https://github.com/xiaolin8/course.git fetch = +refs/heads/*:refs/remotes/origin/*
Open service 168.138.40.212:22
2024-06-14 22:05
Open service 168.138.40.212:443
2024-06-03 00:21
HTTP/1.1 404 Not Found Date: Mon, 03 Jun 2024 00:21:37 GMT Server: nginx/1.14.1 Content-Length: 0 Connection: close
Open service 168.138.40.212:22
2024-06-02 11:46
Open service 168.138.40.212:443 ยท v212.fanklin.top
2024-05-31 05:49
HTTP/1.1 404 Not Found Date: Fri, 31 May 2024 05:49:47 GMT Server: nginx/1.14.1 Content-Length: 0 Connection: close
Open service 168.138.40.212:22
2024-05-28 20:54
Open service 168.138.40.212:443
2024-05-28 14:09
HTTP/1.1 404 Not Found Date: Tue, 28 May 2024 14:09:38 GMT Server: nginx/1.14.1 Content-Length: 0 Connection: close