nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb5a7d696c8bb8c345dbb8c345dbb8c345dbb8c345d
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_9.2p1 Debian-2 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
Open service 45.236.245.11:443
2024-12-22 00:59
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 00:59:56 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNY1HDVZYCKWVCT761AX2VD","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNY1HDVZYCKWVCT761AX2VD X-Runtime: 0.065352 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-21 23:43
Open service 45.236.245.11:443
2024-12-20 00:34
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 00:34:08 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGQRV2XSTN0KTSAW8RZ6BQK","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGQRV2XSTN0KTSAW8RZ6BQK X-Runtime: 0.189223 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-19 23:19
Open service 45.236.245.11:443
2024-12-18 01:47
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 01:47:46 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBQ67P60A686QRQPE5673VH","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBQ67P60A686QRQPE5673VH X-Runtime: 0.060190 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-18 00:00
Open service 45.236.245.11:443
2024-12-15 23:50
HTTP/1.1 302 Found Server: nginx Date: Sun, 15 Dec 2024 23:50:36 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6BP8NQQ2CGAHM211WZ4Y6T","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6BP8NQQ2CGAHM211WZ4Y6T X-Runtime: 0.209462 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-15 22:40
Open service 45.236.245.11:443
2024-12-14 00:04
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 00:04:04 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF17NG49AH546JBM1W4JPPYM","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF17NG49AH546JBM1W4JPPYM X-Runtime: 0.058546 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-13 22:46
Open service 45.236.245.11:443
2024-12-12 00:57
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 00:57:41 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEW5Y6Q2N5XTZZG9DSEXWM8T","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEW5Y6Q2N5XTZZG9DSEXWM8T X-Runtime: 0.191687 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-11 22:52
Open service 45.236.245.11:443
2024-12-02 01:42
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 01:42:54 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE2GHTBV9PZ0HR6DVCZ6TY4Q","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE2GHTBV9PZ0HR6DVCZ6TY4Q X-Runtime: 0.184772 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-12-01 21:32
Open service 45.236.245.11:443
2024-11-30 01:03
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 01:03:56 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDX9H1TD3TVFPSSWH861NKHP","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDX9H1TD3TVFPSSWH861NKHP X-Runtime: 0.061923 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-11-29 21:23
Open service 45.236.245.11:443
2024-11-28 01:06
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 01:06:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://45.236.245.11/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDR4WWTWWZT572HHYXKYB35Y","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDR4WWTWWZT572HHYXKYB35Y X-Runtime: 0.206869 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://45.236.245.11/users/sign_in">redirected</a>.</body></html>
Open service 45.236.245.11:22
2024-11-27 21:12