nginx
tcp/80
The application has Symfony verbose mode enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 05ab011344cbe668c39dfa436dadbbee7643a7559c94672e311a38bd26f837f0
app_cloudinary_active: true app_general_agent: francesc app_general_environment: develop app_general_server: local app_google_maps_api_keys: www.opendestination.co: ABQIAAAASrLbMoOYXGIoCI8d_583RBQ6sd26Ph_Q4uWASh2WoAkjt2wvOxQwHANNn0FNbUYlBpPABT-x_7GM7A www.opendestination.com: ABQIAAAASrLbMoOYXGIoCI8d_583RBSADpenihCf3qlZe9r084H4l1Nc5BRXR5qxY442XTD60DVnge34J4R2Eg opendestination.com: ABQIAAAASrLbMoOYXGIoCI8d_583RBSADpenihCf3qlZe9r084H4l1Nc5BRXR5qxY442XTD60DVnge34J4R2Eg isengard2: ABQIAAAASrLbMoOYXGIoCI8d_583RBQ6sd26Ph_Q4uWASh2WoAkjt2wvOxQwHANNn0FNbUYlBpPABT-x_7GM7A www.diprotech.com: ABQIAAAASrLbMoOYXGIoCI8d_583RBQ6sd26Ph_Q4uWASh2WoAkjt2wvOxQwHANNn0FNbUYlBpPABT-x_7GM7A beta.opendestination.com: ABQIAAAASrLbMoOYXGIoCI8d_583RBSADpenihCf3qlZe9r084H4l1Nc5BRXR5qxY442XTD60DVnge34J4R2Eg moosecreek.opendestination.com: ABQIAAAASrLbMoOYXGIoCI8d_583RBSADpenihCf3qlZe9r084H4l1Nc5BRXR5qxY442XTD60DVnge34J4R2Eg app_params_to_escape_list: - loadingString - closeString app_zendesk_active: true sf_admin_module_web_dir: /sfDoctrinePlugin sf_admin_web_dir: /sf/sf_admin sf_app: frontend sf_app_base_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend sf_app_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev sf_app_config_dir: /var/www/SpotlioBackendCandidate/apps/frontend/config sf_app_dir: /var/www/SpotlioBackendCandidate/apps/frontend sf_app_i18n_dir: /var/www/SpotlioBackendCandidate/apps/frontend/i18n sf_app_lib_dir: /var/www/SpotlioBackendCandidate/apps/frontend/lib sf_app_module_dir: /var/www/SpotlioBackendCandidate/apps/frontend/modules sf_app_template_dir: /var/www/SpotlioBackendCandidate/apps/frontend/templates sf_apps_dir: /var/www/SpotlioBackendCandidate/apps sf_cache: false sf_cache_dir: /var/www/SpotlioBackendCandidate/cache sf_charset: UTF-8 sf_check_lock: true sf_compressed: false sf_config_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev/config sf_config_dir: /var/www/SpotlioBackendCandidate/config sf_csrf_secret: fdbdcadb83df29f82657872f96f1b0a4bb43af79 sf_data_dir: /var/www/SpotlioBackendCandidate/data sf_debug: true sf_default_culture: en_US sf_enabled_modules: - default - sfCaptchaGD - sfEasyGMap - sfPrototypePlugin - sfModalBoxPlugin sf_environment: dev sf_error_404_action: error404 sf_error_404_module: default sf_error_reporting: 32767 sf_escaping_method: ESC_SPECIALCHARS sf_escaping_strategy: true sf_etag: false sf_file_link_format: null sf_i18n: false sf_i18n_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev/i18n sf_lib_dir: /var/www/SpotlioBackendCandidate/lib sf_log_dir: /var/www/SpotlioBackendCandidate/log sf_logging_enabled: true sf_login_action: GotoLogin sf_login_module: privada sf_module_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev/modules sf_module_disabled_action: disabled sf_module_disabled_module: default sf_no_script_name: false sf_orm: doctrine sf_plugins_dir: /var/www/SpotlioBackendCandidate/plugins sf_prototype_web_dir: /sfPrototypePlugin sf_root_dir: /var/www/SpotlioBackendCandidate sf_secure_action: secure sf_secure_module: default sf_standard_helpers: - Partial - Cache - URLCustom - ImgCustom sf_symfony_lib_dir: /var/www/SpotlioBackendCandidate/lib/vendor/symfony/lib sf_template_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev/template sf_test_cache_dir: /var/www/SpotlioBackendCandidate/cache/frontend/dev/test sf_test_dir: /var/www/SpotlioBackendCandidate/test sf_upload_dir: /var/www/SpotlioBackendCandidate/web/uploads sf_use_database: true sf_web_debug: true sf_web_debug_web_dir: /sf/sf_web_debug sf_web_dir: /var/www/SpotlioBackendCandidate/web
Open service 52.1.213.112:80
2024-03-02 14:21
HTTP/1.1 200 OK Date: Sat, 02 Mar 2024 14:21:28 GMT Content-Type: text/html; charset=utf-8 Content-Length: 2141 Connection: close Server: nginx X-Powered-By: Express Access-Control-Allow-Origin: * Access-Control-Allow-Methods: * Access-Control-Allow-Headers: * Accept-Ranges: bytes ETag: W/"85d-AkgiAdm53jb4YBZndkg+UM44yl4" Vary: Accept-Encoding <!doctype html> <html lang="en"> <head> <meta charset="utf-8" /> <link rel="icon" href="/outpoint-favicon.ico" /> <meta name="viewport" content="width=device-width, initial-scale=1" /> <meta name="theme-color" content="#000000" /> <meta name="description" content="Diversify and scale your media mix with a suite of budget allocation decision tools for improved performance on every ad dollar." /> <link rel="apple-touch-icon" href="/outpoint-apple-touch-icon.png" /> <!-- manifest.json provides metadata used when your web app is installed on a user's mobile device or desktop. See https://developers.google.com/web/fundamentals/web-app-manifest/ --> <link rel="manifest" href="/outpoint-manifest.json" /> <!-- Notice the use of in the tags above. It will be replaced with the URL of the `public` folder during the build. Only files inside the `public` folder can be referenced from the HTML. Unlike "/favicon.ico" or "favicon.ico", "/favicon.ico" will work correctly both with client-side routing and a non-root public URL. Learn how to configure a non-root public URL by running `npm run build`. --> <script> if ("outpoint" === "outpoint") { document.title = "OutPoint App"; } else if ("outpoint" === "nectar_first") { document.title = "Nectar App"; } else { document.title = "App"; } </script> <script defer src="/static/js/bundle.js"></script></head> <body style="background-color: #faf9fc"> <noscript>You need to enable JavaScript to run this app.</noscript> <div id="root"></div> <!-- This HTML file is a template. If you open it directly in the browser, you will see an empty page. You can add webfonts, meta tags, or analytics to this file. The build step will place the bundled scripts into the <body> tag. To begin the development, run `npm start` or `yarn start`. To create a production bundle, use `npm run build` or `yarn build`. --> </body> </html>