nginx
tcp/443 tcp/80
The following Moodle application is publicly accessible and looks out-dated :
It is highly recommended to update to a safe version as soon as possible since multiple CVEs allow remote attackers to craft XSS attacks leading to code execution on the server.
If the application was already patched, reloading the web server to clear the PHP opcache will fix issue.
Reference:
Severity: high
Fingerprint: 0b591a20d83e9bbda3370ce58008084480080844800808448008084480080844
Found vulnerable Moodle application: Affected by CVE-2023-30943
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-12-22 04:40
HTTP/1.1 200 OK Server: nginx Date: Sun, 22 Dec 2024 04:40:11 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=1e84d49859c902ad6d0903428e8e2ed9; path=/; secure Last-Modified: Sun, 22 Dec 2024 04:40:11 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-12-20 07:12
HTTP/1.1 200 OK Server: nginx Date: Fri, 20 Dec 2024 07:12:40 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=5b0fcdc930b868544dcc9c3052d52538; path=/; secure Last-Modified: Fri, 20 Dec 2024 07:12:40 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-12-18 22:32
HTTP/1.1 200 OK Server: nginx Date: Wed, 18 Dec 2024 22:32:19 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=a4923e591d71aa9407a68d2f1b59191b; path=/; secure Last-Modified: Wed, 18 Dec 2024 22:32:19 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · playground.crossmedia.ro
2024-12-13 06:16
HTTP/1.1 403 Forbidden Server: nginx Date: Fri, 13 Dec 2024 06:16:06 GMT Content-Type: text/html Content-Length: 3431 Connection: close Last-Modified: Sat, 27 Apr 2024 05:16:19 GMT ETag: "d67-6170d1ed77d56" Accept-Ranges: bytes <!DOCTYPE html> <html> <head> <meta charset="utf-8"> <style>.circle_text{font-family:Verdana,Arial,Microsoft JhengHei,sans-serif;font-weight:700}.center{font-family:Verdana,Arial,Microsoft JhengHei,sans-serif}html{height:100%}body{margin:0 auto;min-height:600px;min-width:800px;height:100%}.top{height:100px;height:calc(40% - 140px)}.bottom{height:150px;height:calc(60% - 210px)}.center{height:350px;text-align:center;vertical-align:middle}.circle{margin:auto;width:260px;height:260px;border-radius:50%;background:#c0c6cc}.circle_text{line-height:260px;font-size:100px;color:#fff}.text{line-height:40px;font-size:26px;color:#414b55} </style> </head> <body> <div class="top"></div> <div class="center"> <div class="circle"> <div class="circle_text">403</div> </div> <div> <p class="text" id="a"></p> </div> <script> /* Copyright (c) 2020 Synology Inc. All rights reserved. */ (function(){var a=new XMLHttpRequest();a.open("get","/missing",true);a.send();a.onreadystatechange=function(){if(a.readyState==4&&(a.status==200||a.status==304)){var c=String(a.responseText);var e=document.open("text/html","replace");e.write(c);e.close()}else{var d={en:"There is an error while processing this request.",zh:"\u5904\u7406\u6b64\u8bf7\u6c42\u65f6\u51fa\u73b0\u9519\u8bef\u3002",it:"Errore durante l'elaborazione della richiesta.","zh-HK":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",cs:"Do\u0161lo k\u00a0chyb\u011b p\u0159i zpracov\u00e1n\u00ed tohoto po\u017eadavku.",es:"Se ha producido un error al procesar esta solicitud.",ru:"\u041f\u0440\u0438 \u043e\u0431\u0440\u0430\u0431\u043e\u0442\u043a\u0435 \u044d\u0442\u043e\u0433\u043e \u0437\u0430\u043f\u0440\u043e\u0441\u0430 \u0432\u043e\u0437\u043d\u0438\u043a\u043b\u0430 \u043e\u0448\u0438\u0431\u043a\u0430.",nl:"Er is een fout opgetreden tijdens deze aanvraag.",pt:"Ocorreu um erro ao processar este pedido.",no:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.",nb:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.",tr:"Bu iste\u011fi i\u015flerken bir hata meydana geldi.",pl:"Wyst\u0105pi\u0142 b\u0142\u0105d podczas przetwarzania tego \u017c\u0105dania.",fr:"Une erreur s'est produite lors du traitement de cette demande.",de:"Bei der Verarbeitung dieser Anforderung ist ein Fehler aufgetreten.",hu:"Hiba t\u00f6rt\u00e9nt a k\u00e9r\u00e9s feldolgoz\u00e1sa sor\u00e1n.","pt-BR":"Houve um erro ao processar esta solicita\u00e7\u00e3o.","zh-MO":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",da:"Der er en fejl under behandling af denne anmodning.",ja:"\u3053\u306e\u8981\u8acb\u3092\u51e6\u7406\u3057\u3066\u3044\u308b\u9593\u306b\u30a8\u30e9\u30fc\u304c\u767a\u751f\u3057\u307e\u3057\u305f\u3002",nn:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.","zh-TW":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",ko:"\uc774 \uc694\uccad\uc744 \ucc98\ub9ac\ud558\ub294 \ub3d9\uc548 \uc624\ub958\uac00 \ubc1c\uc0dd\ud588\uc2b5\ub2c8\ub2e4.",sv:"Det blev ett fel n\u00e4r beg\u00e4ran bearbetades."};var b=["zh-TW","zh-HK","zh-MO","pt-BR"];var f;if(window.navigator.languages!==undefined){f=window.navigator.languages[0]}else{f=window.navigator.language||window.navigator.browserLanguage}if(b.indexOf(f)<0){f=f.split("-")[0]}document.getElementById("a").innerHTML=d[f]||d.enu}}})(); </script> </div> <div class="bottom"></div> </body> </html>
Open service 188.173.53.149:80 · playground.crossmedia.ro
2024-12-13 06:16
HTTP/1.1 403 Forbidden Server: nginx Date: Fri, 13 Dec 2024 06:16:04 GMT Content-Type: text/html Content-Length: 3431 Connection: close Last-Modified: Sat, 27 Apr 2024 05:16:19 GMT ETag: "d67-6170d1ed77d56" Accept-Ranges: bytes <!DOCTYPE html> <html> <head> <meta charset="utf-8"> <style>.circle_text{font-family:Verdana,Arial,Microsoft JhengHei,sans-serif;font-weight:700}.center{font-family:Verdana,Arial,Microsoft JhengHei,sans-serif}html{height:100%}body{margin:0 auto;min-height:600px;min-width:800px;height:100%}.top{height:100px;height:calc(40% - 140px)}.bottom{height:150px;height:calc(60% - 210px)}.center{height:350px;text-align:center;vertical-align:middle}.circle{margin:auto;width:260px;height:260px;border-radius:50%;background:#c0c6cc}.circle_text{line-height:260px;font-size:100px;color:#fff}.text{line-height:40px;font-size:26px;color:#414b55} </style> </head> <body> <div class="top"></div> <div class="center"> <div class="circle"> <div class="circle_text">403</div> </div> <div> <p class="text" id="a"></p> </div> <script> /* Copyright (c) 2020 Synology Inc. All rights reserved. */ (function(){var a=new XMLHttpRequest();a.open("get","/missing",true);a.send();a.onreadystatechange=function(){if(a.readyState==4&&(a.status==200||a.status==304)){var c=String(a.responseText);var e=document.open("text/html","replace");e.write(c);e.close()}else{var d={en:"There is an error while processing this request.",zh:"\u5904\u7406\u6b64\u8bf7\u6c42\u65f6\u51fa\u73b0\u9519\u8bef\u3002",it:"Errore durante l'elaborazione della richiesta.","zh-HK":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",cs:"Do\u0161lo k\u00a0chyb\u011b p\u0159i zpracov\u00e1n\u00ed tohoto po\u017eadavku.",es:"Se ha producido un error al procesar esta solicitud.",ru:"\u041f\u0440\u0438 \u043e\u0431\u0440\u0430\u0431\u043e\u0442\u043a\u0435 \u044d\u0442\u043e\u0433\u043e \u0437\u0430\u043f\u0440\u043e\u0441\u0430 \u0432\u043e\u0437\u043d\u0438\u043a\u043b\u0430 \u043e\u0448\u0438\u0431\u043a\u0430.",nl:"Er is een fout opgetreden tijdens deze aanvraag.",pt:"Ocorreu um erro ao processar este pedido.",no:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.",nb:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.",tr:"Bu iste\u011fi i\u015flerken bir hata meydana geldi.",pl:"Wyst\u0105pi\u0142 b\u0142\u0105d podczas przetwarzania tego \u017c\u0105dania.",fr:"Une erreur s'est produite lors du traitement de cette demande.",de:"Bei der Verarbeitung dieser Anforderung ist ein Fehler aufgetreten.",hu:"Hiba t\u00f6rt\u00e9nt a k\u00e9r\u00e9s feldolgoz\u00e1sa sor\u00e1n.","pt-BR":"Houve um erro ao processar esta solicita\u00e7\u00e3o.","zh-MO":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",da:"Der er en fejl under behandling af denne anmodning.",ja:"\u3053\u306e\u8981\u8acb\u3092\u51e6\u7406\u3057\u3066\u3044\u308b\u9593\u306b\u30a8\u30e9\u30fc\u304c\u767a\u751f\u3057\u307e\u3057\u305f\u3002",nn:"Det oppsto en feil under behandlingen av denne foresp\u00f8rselen.","zh-TW":"\u60a8\u6240\u6307\u5b9a\u7684\u9801\u9762\u767c\u751f\u932f\u8aa4\u3002",ko:"\uc774 \uc694\uccad\uc744 \ucc98\ub9ac\ud558\ub294 \ub3d9\uc548 \uc624\ub958\uac00 \ubc1c\uc0dd\ud588\uc2b5\ub2c8\ub2e4.",sv:"Det blev ett fel n\u00e4r beg\u00e4ran bearbetades."};var b=["zh-TW","zh-HK","zh-MO","pt-BR"];var f;if(window.navigator.languages!==undefined){f=window.navigator.languages[0]}else{f=window.navigator.language||window.navigator.browserLanguage}if(b.indexOf(f)<0){f=f.split("-")[0]}document.getElementById("a").innerHTML=d[f]||d.enu}}})(); </script> </div> <div class="bottom"></div> </body> </html>
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-12-12 15:20
HTTP/1.1 200 OK Server: nginx Date: Thu, 12 Dec 2024 15:20:30 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=012e3edb650179215dec7dccd7ffa050; path=/; secure Last-Modified: Thu, 12 Dec 2024 15:20:30 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-12-02 16:07
HTTP/1.1 200 OK Server: nginx Date: Mon, 02 Dec 2024 16:07:39 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=84f38c73112ecc0a7be8fe5050590d76; path=/; secure Last-Modified: Mon, 02 Dec 2024 16:07:39 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · baptist-br.ro
2024-12-02 07:10
HTTP/1.1 200 OK Server: nginx Date: Mon, 02 Dec 2024 07:10:45 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Link: <https://baptist-br.ro/wp-json/>; rel="https://api.w.org/", <https://baptist-br.ro/wp-json/wp/v2/pages/10>; rel="alternate"; title="JSON"; type="application/json", <https://baptist-br.ro/>; rel=shortlink Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:80 · baptist-br.ro
2024-12-02 07:10
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 02 Dec 2024 07:10:43 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://baptist-br.ro/ Strict-Transport-Security: max-age=15768000 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-11-30 22:30
HTTP/1.1 200 OK Server: nginx Date: Sat, 30 Nov 2024 22:30:26 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=28265cd6ad85655325c9b2eacf86ef62; path=/; secure Last-Modified: Sat, 30 Nov 2024 22:30:26 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · cursuri.crossmedia.ro
2024-11-28 05:20
HTTP/1.1 200 OK Server: nginx Date: Thu, 28 Nov 2024 05:20:05 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: close Content-Language: ro Content-Script-Type: text/javascript Content-Style-Type: text/css X-UA-Compatible: IE=edge Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0, no-transform Pragma: no-cache Expires: Mon, 20 Aug 1969 09:23:00 GMT Accept-Ranges: none X-Frame-Options: sameorigin Set-Cookie: MoodleSession=efc0ecaa3ace7ec24e4990ca9cd5e642; path=/; secure Last-Modified: Thu, 28 Nov 2024 05:20:05 GMT Vary: Accept-Encoding Strict-Transport-Security: max-age=15768000
Open service 188.173.53.149:443 · crossmedia.direct.quickconnect.to
2024-11-26 20:11
HTTP/1.1 403 Forbidden Server: nginx Date: Tue, 26 Nov 2024 20:11:25 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 199 Connection: close Page title: 403 Forbidden <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>403 Forbidden</title> </head><body> <h1>Forbidden</h1> <p>You don't have permission to access this resource.</p> </body></html>
Open service 188.173.53.149:80 · crossmedia.direct.quickconnect.to
2024-11-26 20:11
HTTP/1.1 403 Forbidden Server: nginx Date: Tue, 26 Nov 2024 20:11:21 GMT Content-Type: text/html; charset=iso-8859-1 Content-Length: 199 Connection: close Page title: 403 Forbidden <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>403 Forbidden</title> </head><body> <h1>Forbidden</h1> <p>You don't have permission to access this resource.</p> </body></html>