nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 3.14.139.33:443
2024-12-21 21:05
HTTP/1.1 302 Found Server: nginx Date: Sat, 21 Dec 2024 21:05:14 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNGKSHMH0JPRDVFMM9ZC815","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNGKSHMH0JPRDVFMM9ZC815 X-Runtime: 0.056570 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-12-21 02:02
HTTP/1.1 302 Found Server: nginx Date: Sat, 21 Dec 2024 02:03:02 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFKF8BFBFRYY9T24DEYTAMGY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFKF8BFBFRYY9T24DEYTAMGY X-Runtime: 0.026224 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-19 22:31
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 22:31:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGGR84VM844A39SAG31WYW3","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGGR84VM844A39SAG31WYW3 X-Runtime: 0.025295 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-12-19 03:26
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 03:26:18 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFEF7BVHXTSRWS6N7MNCTSW9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFEF7BVHXTSRWS6N7MNCTSW9 X-Runtime: 0.059004 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-17 22:43
HTTP/1.1 302 Found Server: nginx Date: Tue, 17 Dec 2024 22:43:49 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBCND71C8EQBKVVE634XZZV","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBCND71C8EQBKVVE634XZZV X-Runtime: 0.025122 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-15 21:09
HTTP/1.1 302 Found Server: nginx Date: Sun, 15 Dec 2024 21:09:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF62G1HEHHWKHM9VD1X0T5H9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF62G1HEHHWKHM9VD1X0T5H9 X-Runtime: 0.026557 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-12-14 13:16
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 13:16:58 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF2N1ANW2YZ6QZBB061691Q9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF2N1ANW2YZ6QZBB061691Q9 X-Runtime: 0.057586 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-13 21:12
HTTP/1.1 302 Found Server: nginx Date: Fri, 13 Dec 2024 21:12:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF0XW1HECJ6D7NRGKZERYWAE","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF0XW1HECJ6D7NRGKZERYWAE X-Runtime: 0.058423 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-12-12 18:01
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 18:01:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEY0GRFN3KJANP8CGWB2CH2E","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEY0GRFN3KJANP8CGWB2CH2E X-Runtime: 0.026199 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-11 21:11
HTTP/1.1 302 Found Server: nginx Date: Wed, 11 Dec 2024 21:11:38 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEVS09TF3HPYN2R6WCPV4TTZ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEVS09TF3HPYN2R6WCPV4TTZ X-Runtime: 0.024321 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-12-02 19:13
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 19:13:42 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE4CNX9Z907QN297ZK4G0Y56","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE4CNX9Z907QN297ZK4G0Y56 X-Runtime: 0.025072 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-12-01 21:22
HTTP/1.1 302 Found Server: nginx Date: Sun, 01 Dec 2024 21:22:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE21MVVPAPYM14EYXN3JW9K4","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE21MVVPAPYM14EYXN3JW9K4 X-Runtime: 0.027522 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-11-30 23:27
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 23:27:49 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDZPDRBTSQJRDDFA3DDKFDXQ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDZPDRBTSQJRDDFA3DDKFDXQ X-Runtime: 0.031352 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-11-29 22:27
HTTP/1.1 302 Found Server: nginx Date: Fri, 29 Nov 2024 22:27:04 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDX0HTH3PC5WZXXAZRWXKW3V","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDX0HTH3PC5WZXXAZRWXKW3V X-Runtime: 0.025253 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-11-28 23:02
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 23:02:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDTG6NX256C6WQ8C5Z3S1GBY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDTG6NX256C6WQ8C5Z3S1GBY X-Runtime: 0.063413 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443
2024-11-27 21:44
HTTP/1.1 302 Found Server: nginx Date: Wed, 27 Nov 2024 21:44:54 GMT Content-Type: text/html; charset=utf-8 Content-Length: 99 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://3.14.139.33/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDQSB4YC399GSMG22PE5TNW9","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDQSB4YC399GSMG22PE5TNW9 X-Runtime: 0.057530 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://3.14.139.33/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-11-27 00:11
HTTP/1.1 302 Found Server: nginx Date: Wed, 27 Nov 2024 00:11:09 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDNFA87XJRQT6G077WYWD08E","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDNFA87XJRQT6G077WYWD08E X-Runtime: 0.024047 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>
Open service 3.14.139.33:443 · gitlab.wiseinnovationstudios.com
2024-11-20 11:12
HTTP/1.1 302 Found Server: nginx Date: Wed, 20 Nov 2024 11:12:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 120 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://gitlab.wiseinnovationstudios.com/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JD4MCSB51JD09SFXAFW9DYDB","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JD4MCSB51JD09SFXAFW9DYDB X-Runtime: 0.024831 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://gitlab.wiseinnovationstudios.com/users/sign_in">redirected</a>.</body></html>