CloudPanel 2.5.3
tcp/8443
nginx
tcp/443 tcp/80 tcp/8443
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb53ea6237e8f56bf578f56bf578f56bf578f56bf57
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.13 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: high
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652257dfb2e0
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://CodeBoxDeveloper@bitbucket.org/CodeBoxDeveloper/moche.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master
Open service 192.99.168.68:22
2026-01-26 15:45
Open service 192.99.168.68:22
2026-01-22 18:34
Open service 192.99.168.68:443 · easydeliciousmeals.com
2026-01-09 00:56
HTTP/1.1 200 OK Server: nginx Date: Fri, 09 Jan 2026 00:57:03 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Vary: Accept-Encoding X-UA-Compatible: IE=edge Link: <https://easydeliciousmeals.com/wp-json/>; rel="https://api.w.org/" Link: <https://easydeliciousmeals.com/wp-json/wp/v2/pages/6641>; rel="alternate"; title="JSON"; type="application/json" Link: <https://easydeliciousmeals.com/>; rel=shortlink X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin
Open service 192.99.168.68:22
2026-01-08 17:48
Open service 192.99.168.68:443 · easydeliciousmeals.com
2026-01-02 01:02
HTTP/1.1 200 OK Server: nginx Date: Fri, 02 Jan 2026 01:02:47 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Vary: Accept-Encoding X-UA-Compatible: IE=edge Link: <https://easydeliciousmeals.com/wp-json/>; rel="https://api.w.org/" Link: <https://easydeliciousmeals.com/wp-json/wp/v2/pages/6641>; rel="alternate"; title="JSON"; type="application/json" Link: <https://easydeliciousmeals.com/>; rel=shortlink X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin
Open service 192.99.168.68:22
2026-01-01 19:02
Open service 192.99.168.68:443 · n8n.aitmellouk.com
2025-12-31 21:32
HTTP/1.1 502 Bad Gateway Server: nginx Date: Wed, 31 Dec 2025 21:32:20 GMT Content-Type: text/html Content-Length: 150 Connection: close Page title: 502 Bad Gateway <html> <head><title>502 Bad Gateway</title></head> <body> <center><h1>502 Bad Gateway</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.99.168.68:80 · n8n.aitmellouk.com
2025-12-31 21:32
HTTP/1.1 301 Moved Permanently Server: nginx Date: Wed, 31 Dec 2025 21:32:20 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://n8n.aitmellouk.com/ X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 192.99.168.68:8443 · n8n.aitmellouk.com
2025-12-31 21:32
HTTP/1.1 302 Found
Server: nginx
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: max-age=0, must-revalidate, private
Date: Wed, 31 Dec 2025 21:32:19 GMT
Location: /login
Expires: Wed, 31 Dec 2025 21:32:19 GMT
Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax
Set-Cookie: cloudpanel=r21q27s6i0jfdg87ebe75bcv8m; path=/; secure; httponly; samesite=lax
Page title: Redirecting to /login
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='/login'" />
<title>Redirecting to /login</title>
</head>
<body>
Redirecting to <a href="/login">/login</a>.
</body>
</html>
Open service 192.99.168.68:8443 · n8n.aitmellouk.com
2025-12-31 21:32
HTTP/1.1 302 Found
Server: nginx
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: max-age=0, must-revalidate, private
Date: Wed, 31 Dec 2025 21:32:19 GMT
Location: /login
Expires: Wed, 31 Dec 2025 21:32:19 GMT
Set-Cookie: locale=en; path=/; secure; httponly; samesite=lax
Set-Cookie: cloudpanel=r21q27s6i0jfdg87ebe75bcv8m; path=/; secure; httponly; samesite=lax
Page title: Redirecting to /login
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='/login'" />
<title>Redirecting to /login</title>
</head>
<body>
Redirecting to <a href="/login">/login</a>.
</body>
</html>
Open service 192.99.168.68:22
2025-12-23 21:35
Open service 192.99.168.68:443 · easydeliciousmeals.com
2025-12-22 09:13
HTTP/1.1 200 OK Server: nginx Date: Mon, 22 Dec 2025 09:13:46 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Vary: Accept-Encoding X-UA-Compatible: IE=edge Link: <https://easydeliciousmeals.com/wp-json/>; rel="https://api.w.org/" Link: <https://easydeliciousmeals.com/wp-json/wp/v2/pages/6641>; rel="alternate"; title="JSON"; type="application/json" Link: <https://easydeliciousmeals.com/>; rel=shortlink X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Permitted-Cross-Domain-Policies: master-only Referrer-Policy: same-origin