Webs
tcp/81
An attacker can make use of this vulnerability to step out of the root directory and access other parts of the file system.
This might give the attacker the ability to view restricted files, which could provide the attacker with more information required to further compromise the system.
https://www.acunetix.com/websitesecurity/directory-traversal/
Severity: critical
Fingerprint: ac4d53c4832b2491752255c4a7f4edda8c025b7026ad5f50949135366ccd0cec
Found host file trough Apache traversal: # do not remove the following line, or various programs # that require network functionality will fail. 127.0.0.1 localhost 192.168.0.10 mpc8313erdb 192.168.0.1 gateway0 192.168.0.3 gateway1 192.168.0.4 gateway2 192.168.0.5 gateway3 192.168.0.6 gateway4
Severity: critical
Fingerprint: ac4d53c4832b2491c591c07d1c07f5a113ba96f16b1000ab24f74101676f2597
Found host file trough Directory traversal: # do not remove the following line, or various programs # that require network functionality will fail. 127.0.0.1 localhost 192.168.0.10 mpc8313erdb 192.168.0.1 gateway0 192.168.0.3 gateway1 192.168.0.4 gateway2 192.168.0.5 gateway3 192.168.0.6 gateway4
Open service 47.180.152.74:81
2024-04-25 10:38
HTTP/1.1 200 OK Date: Thu, 25 Apr 2024 03:05:01 GMT Server: Webs X-Frame-Options: SAMEORIGIN ETag: "0-c4f-1e0" Content-Length: 480 Content-Type: text/html Connection: close Last-Modified: Mon, 10 Dec 2018 05:55:28 GMT <!doctype html> <html> <head> <title></title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="X-UA-Compatible" content="IE=edge" > <meta http-equiv="Pragma" content="no-cache" /> <meta http-equiv="Cache-Control" content="no-cache, must-revalidate" /> <meta http-equiv="Expires" content="0" /> </head> <body> </body> <script> window.location.href = "/doc/page/login.asp?_" + (new Date()).getTime(); </script> </html>
Open service 47.180.152.74:81
2024-04-24 20:57
HTTP/1.1 200 OK Date: Wed, 24 Apr 2024 13:23:49 GMT Server: Webs X-Frame-Options: SAMEORIGIN ETag: "0-c4f-1e0" Content-Length: 480 Content-Type: text/html Connection: close Last-Modified: Mon, 10 Dec 2018 05:55:28 GMT <!doctype html> <html> <head> <title></title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="X-UA-Compatible" content="IE=edge" > <meta http-equiv="Pragma" content="no-cache" /> <meta http-equiv="Cache-Control" content="no-cache, must-revalidate" /> <meta http-equiv="Expires" content="0" /> </head> <body> </body> <script> window.location.href = "/doc/page/login.asp?_" + (new Date()).getTime(); </script> </html>
Open service 47.180.152.74:81
2024-04-23 02:39
HTTP/1.1 200 OK Date: Mon, 22 Apr 2024 19:05:48 GMT Server: Webs X-Frame-Options: SAMEORIGIN ETag: "0-c4f-1e0" Content-Length: 480 Content-Type: text/html Connection: close Last-Modified: Mon, 10 Dec 2018 05:55:28 GMT <!doctype html> <html> <head> <title></title> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <meta http-equiv="X-UA-Compatible" content="IE=edge" > <meta http-equiv="Pragma" content="no-cache" /> <meta http-equiv="Cache-Control" content="no-cache, must-revalidate" /> <meta http-equiv="Expires" content="0" /> </head> <body> </body> <script> window.location.href = "/doc/page/login.asp?_" + (new Date()).getTime(); </script> </html>