nginx
tcp/443
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb548797adcd8eb91e1d8eb91e1d8eb91e1d8eb91e1
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
The reply originated from a backend server, the originating frontend server has been included in the report for reference.
It is critical to patch log4j or the application using since the issues is exploited in the wild and leads to RCE.
Severity: critical
Fingerprint: aff4d642200b0639f8880459931901234b7a424829ff122e50393c1250393c12
Received reply after a Log4j payload from this host Ping was received because of query argument Reply took 1.396778295s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620717565727920617267756d656e740a5265706c7920746f6f6b20312e333936373738323935730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459b0628eb78616a9beb6b9b0b45905484b5905484b
Received reply after a Log4j payload from this host Ping was received because of User-Agent Reply took 3.832909072s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620557365722d4167656e740a5265706c7920746f6f6b20332e383332393039303732730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459a5c7f9f465967b22858df218f9f87d82f9f87d82
Received reply after a Log4j payload from this host Ping was received because of Cache-Control Reply took 4.653040473s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662043616368652d436f6e74726f6c0a5265706c7920746f6f6b20342e363533303430343733730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459d2eb3d8fc12da91c9a98c0f261a260c761a260c7
Received reply after a Log4j payload from this host Ping was received because of cookie value Reply took 6.322075307s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620636f6f6b69652076616c75650a5265706c7920746f6f6b20362e333232303735333037730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459215798a27d16c91ba337d4917af9eae07af9eae0
Received reply after a Log4j payload from this host Ping was received because of URL path Reply took 534.673174ms Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662055524c20706174680a5265706c7920746f6f6b203533342e3637333137346d730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459e94669a5fa019df678423abc7a72d33f7a72d33f
Received reply after a Log4j payload from this host Ping was received because of query value Reply took 3.00944861s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662071756572792076616c75650a5265706c7920746f6f6b20332e3030393434383631730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459d5e18a6599e466174bc225bda2357032a2357032
Received reply after a Log4j payload from this host Ping was received because of cookie name Reply took 5.503799183s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620636f6f6b6965206e616d650a5265706c7920746f6f6b20352e353033373939313833730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459ed3e1aa420bcf705201eebdb86c145cf86c145cf
Received reply after a Log4j payload from this host Ping was received because of X-Forwared-Host Reply took 7.169161345s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620582d466f7277617265642d486f73740a5265706c7920746f6f6b20372e313639313631333435730a
The reply originated from a backend server, the originating frontend server has been included in the report for reference.
It is critical to patch log4j or the application using since the issues is exploited in the wild and leads to RCE.
Severity: critical
Fingerprint: aff4d642200b0639f888045993190123210fb1e49ea3d1eadb180b06db180b06
Received reply after a Log4j payload from this host Ping was received because of query argument Reply took 1.510524137s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620717565727920617267756d656e740a5265706c7920746f6f6b20312e353130353234313337730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459e94669a521ef79c4da5ee58a08f2ae8f08f2ae8f
Received reply after a Log4j payload from this host Ping was received because of query value Reply took 2.33280618s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662071756572792076616c75650a5265706c7920746f6f6b20322e3333323830363138730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459215798a243c8fee06cf59d960644a9d40644a9d4
Received reply after a Log4j payload from this host Ping was received because of URL path Reply took 663.986551ms Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662055524c20706174680a5265706c7920746f6f6b203636332e3938363535316d730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459b0628eb7f30ffd9074aa9ea670baaae170baaae1
Received reply after a Log4j payload from this host Ping was received because of User-Agent Reply took 3.148477265s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620557365722d4167656e740a5265706c7920746f6f6b20332e313438343737323635730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459a5c7f9f4827a1aa442ba72aa187b5ac2187b5ac2
Received reply after a Log4j payload from this host Ping was received because of Cache-Control Reply took 3.999652195s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662043616368652d436f6e74726f6c0a5265706c7920746f6f6b20332e393939363532313935730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459d5e18a65b3ecd45406106b7a63156e8263156e82
Received reply after a Log4j payload from this host Ping was received because of cookie name Reply took 4.842471207s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620636f6f6b6965206e616d650a5265706c7920746f6f6b20342e383432343731323037730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459ed3e1aa426da6e11b9a94a27c87fc335c87fc335
Received reply after a Log4j payload from this host Ping was received because of X-Forwared-Host Reply took 6.499358755s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620582d466f7277617265642d486f73740a5265706c7920746f6f6b20362e343939333538373535730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459d2eb3d8f3d284dc9f61e934f2a59f6db2a59f6db
Received reply after a Log4j payload from this host Ping was received because of cookie value Reply took 5.677599396s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620636f6f6b69652076616c75650a5265706c7920746f6f6b20352e363737353939333936730a
The reply originated from a backend server, the originating frontend server has been included in the report for reference.
It is critical to patch log4j or the application using since the issues is exploited in the wild and leads to RCE.
Severity: critical
Fingerprint: aff4d642200b0639f8880459215798a2e7a12c030178a509adb8f808adb8f808
Received reply after a Log4j payload from this host Ping was received because of URL path Reply took 746.919183ms Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662055524c20706174680a5265706c7920746f6f6b203734362e3931393138336d730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459e94669a5858ca63b28894771220fef82220fef82
Received reply after a Log4j payload from this host Ping was received because of query value Reply took 2.406918242s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f662071756572792076616c75650a5265706c7920746f6f6b20322e343036393138323432730a
Severity: critical
Fingerprint: aff4d642200b0639f8880459931901239ae454b5e09fddabb2904aeeb2904aee
Received reply after a Log4j payload from this host Ping was received because of query argument Reply took 1.556972287s Orignal reply: 5265636569766564207265706c792061667465722061204c6f67346a207061796c6f61642066726f6d207468697320686f73740a50696e67207761732072656365697665642062656361757365206f6620717565727920617267756d656e740a5265706c7920746f6f6b20312e353536393732323837730a
No description available
Fingerprint: 33fc8a384ee3c2e7ac18478eac18478ef839c1307a372be903b226b443c95afd
Nuclei scan report for tags joomla, php: CVE-2015-7297 : Joomla Core SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands. CVE-2017-8917 : Joomla SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors. joomla-panel : Joomla Panel by its0x08 -------------
No description available
Fingerprint: 33fc8a384ee3c2e7ac18478eac18478ef839c1307a372be903b226b4d5335368
Nuclei scan report for tags joomla, php: CVE-2015-7297 : Joomla Core SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands. CVE-2017-8917 : Joomla SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.
No description available
Fingerprint: 33fc8a384ee3c2e7ac18478eac18478ef839c1307a372be903b226b4d5335368
Nuclei scan report for tags joomla, php: CVE-2015-7297 : Joomla Core SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands. CVE-2017-8917 : Joomla SQL Injection by princechaddha ------------- SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2025-01-03 00:34
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 03 Jan 2025 00:34:47 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2025-01-02 14:16
HTTP/1.1 200 OK Server: nginx Date: Thu, 02 Jan 2025 14:17:03 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2025-01-01 20:25
HTTP/1.1 301 Moved Permanently Server: nginx Date: Wed, 01 Jan 2025 20:25:05 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2025-01-01 18:00
HTTP/1.1 200 OK Server: nginx Date: Wed, 01 Jan 2025 18:01:08 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-30 20:52
HTTP/1.1 200 OK Server: nginx Date: Mon, 30 Dec 2024 20:52:49 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-30 17:03
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 30 Dec 2024 17:03:42 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-22 06:12
HTTP/1.1 200 OK Server: nginx Date: Sun, 22 Dec 2024 06:12:37 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-20 14:50
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 20 Dec 2024 14:50:48 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-20 08:10
HTTP/1.1 200 OK Server: nginx Date: Fri, 20 Dec 2024 08:11:01 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-18 12:16
HTTP/1.1 301 Moved Permanently Server: nginx Date: Wed, 18 Dec 2024 12:16:27 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-18 08:18
HTTP/1.1 200 OK Server: nginx Date: Wed, 18 Dec 2024 08:18:20 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-16 04:45
HTTP/1.1 200 OK Server: nginx Date: Mon, 16 Dec 2024 04:45:17 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-16 03:38
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 16 Dec 2024 03:38:47 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-14 05:29
HTTP/1.1 301 Moved Permanently Server: nginx Date: Sat, 14 Dec 2024 05:29:47 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-14 02:12
HTTP/1.1 200 OK Server: nginx Date: Sat, 14 Dec 2024 02:12:38 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-13 01:32
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 13 Dec 2024 01:32:17 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-12 04:09
HTTP/1.1 200 OK Server: nginx Date: Thu, 12 Dec 2024 04:10:05 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: MISS
Open service 45.76.123.237:443 · www.coastalcleaningnsw.com
2024-12-02 20:24
HTTP/1.1 200 OK Server: nginx Date: Mon, 02 Dec 2024 20:24:22 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Link: <https://www.coastalcleaningnsw.com/wp-json/>; rel="https://api.w.org/" Link: <https://www.coastalcleaningnsw.com/wp-json/wp/v2/pages/9>; rel="alternate"; title="JSON"; type="application/json" Link: <https://www.coastalcleaningnsw.com/>; rel=shortlink x-cache-enabled: true X-Cache: HIT
Open service 45.76.123.237:443 · coastalcleaningnsw.com
2024-12-02 20:11
HTTP/1.1 301 Moved Permanently Server: nginx Date: Mon, 02 Dec 2024 20:11:58 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Redirect-By: WordPress Location: https://www.coastalcleaningnsw.com/ x-cache-enabled: true X-Cache: HIT