The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652269ce7a68
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/MeritCleaningWebsiteFrontend.git fetch = +refs/heads/*:refs/remotes/origin/*
Severity: medium
Fingerprint: 2580fa947e78dd08e645819d1e4633dc866880ac8803ebe581c16ba1df25068f
HTTP/1.1 200 OK Date: Sun, 07 May 2023 20:55:22 GMT Server: Apache/2.4.29 (Ubuntu) Vary: Accept-Encoding Content-Length: 2603 Connection: close Content-Type: text/html;charset=UTF-8 Page title: Index of / <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN"> <html> <head> <title>Index of /</title> </head> <body> <h1>Index of /</h1> <table> <tr><th valign="top"><img src="/icons/blank.gif" alt="[ICO]"></th><th><a href="?C=N;O=D">Name</a></th><th><a href="?C=M;O=A">Last modified</a></th><th><a href="?C=S;O=A">Size</a></th><th><a href="?C=D;O=A">Description</a></th></tr> <tr><th colspan="5"><hr></th></tr> <tr><td valign="top"><img src="/icons/text.gif" alt="[TXT]"></td><td><a href="README.md">README.md</a></td><td align="right">2022-11-07 13:56 </td><td align="right">1.0K</td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="angular.json">angular.json</a></td><td align="right">2023-01-06 03:58 </td><td align="right">3.6K</td><td> </td></tr> <tr><td valign="top"><img src="/icons/folder.gif" alt="[DIR]"></td><td><a href="dist/">dist/</a></td><td align="right">2023-04-03 12:29 </td><td align="right"> - </td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="karma.conf.js">karma.conf.js</a></td><td align="right">2022-11-07 17:34 </td><td align="right">1.4K</td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="package-lock.json">package-lock.json</a></td><td align="right">2023-03-13 05:29 </td><td align="right">1.1M</td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="package.json">package.json</a></td><td align="right">2023-02-08 11:49 </td><td align="right">1.6K</td><td> </td></tr> <tr><td valign="top"><img src="/icons/folder.gif" alt="[DIR]"></td><td><a href="src/">src/</a></td><td align="right">2023-02-17 15:13 </td><td align="right"> - </td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="tsconfig.app.json">tsconfig.app.json</a></td><td align="right">2023-01-06 03:58 </td><td align="right">311 </td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="tsconfig.json">tsconfig.json</a></td><td align="right">2022-11-16 05:46 </td><td align="right">791 </td><td> </td></tr> <tr><td valign="top"><img src="/icons/unknown.gif" alt="[ ]"></td><td><a href="tsconfig.spec.json">tsconfig.spec.json</a></td><td align="right">2022-11-07 17:34 </td><td align="right">333 </td><td> </td></tr> <tr><th colspan="5"><hr></th></tr> </table> <address>Apache/2.4.29 (Ubuntu) Server at 54.190.192.105 Port 9167</address> </body></html> [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/MeritCleaningWebsiteFrontend.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65222f77eef9
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/CareComToolBackEnd.git fetch = +refs/heads/*:refs/remotes/origin/*
Severity: medium
Fingerprint: 2580fa947e78dd08e645819d1e4633dc677df94bc1344870d6c641f78155742c
HTTP/1.1 200 OK Date: Sat, 06 May 2023 08:12:33 GMT Server: Apache/2.4.29 (Ubuntu) X-Powered-By: Express Access-Control-Allow-Origin: * Content-Type: text/html; charset=utf-8 Content-Length: 47 ETag: W/"2f-cFk/uqS7mB0rmstLfoYV35Slk3s" Connection: close Welcome ! Server is working fine - go ahead....[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/CareComToolBackEnd.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652272755560
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/PsalmBackend.git
Severity: medium
Fingerprint: 2580fa947e78dd08d3ee439cfbd5b50b207d223029744579805faa2207293ede
HTTP/1.1 404 Not Found X-Powered-By: Express Access-Control-Allow-Origin: * Content-Security-Policy: default-src 'none' X-Content-Type-Options: nosniff Content-Type: text/html; charset=utf-8 Content-Length: 139 Date: Fri, 05 May 2023 23:03:52 GMT Connection: close Page title: Error <!DOCTYPE html> <html lang="en"> <head> <meta charset="utf-8"> <title>Error</title> </head> <body> <pre>Cannot GET /</pre> </body> </html> [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/PsalmBackend.git fetch = +refs/heads/*:refs/remotes/origin/*
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522d0811306
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/PsalmBackend.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652200223a87
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/SimplyBirthedBackend.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652294013c8b
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://www.sdeiscm.com/SDN/MEAN-Aquilx.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522aa29449a
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/LiaseAdmin.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652294013c8b
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://www.sdeiscm.com/SDN/MEAN-Aquilx.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65222f77eef9
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/CareComToolBackEnd.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522ccdca445
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/SimplyBirthedFrontend.git fetch = +refs/heads/*:refs/remotes/origin/*
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a652280ad12b6
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://github.com/sdeitech/CadenceBackend.git fetch = +refs/heads/*:refs/remotes/origin/*
Elasticsearch and/or Kibana is currently open without authentication.
This results in all the database data made available publicly.
Severity: high
Fingerprint: 831cb76b8e05df460b535e182c4a01818e0bca83adea588e6fe01adb6fe01adb
Indices: 4, document count: 1708, size: 40.5 MB Found index .geoip_databases with 40 documents (40.2 MB) Found index folders with 486 documents (90.6 kB) Found index documents with 1177 documents (200.1 kB) Found index leads with 5 documents (20.5 kB)
Severity: high
Fingerprint: 831cb76b8e05df4661f8788368abc95d8c65ee0f5428b5aa926afe5f926afe5f
Indices: 4, document count: 1292, size: 39.0 MB Found index .geoip_databases with 39 documents (38.8 MB) Found index folders with 323 documents (82.3 kB) Found index documents with 925 documents (158.9 kB) Found index leads with 5 documents (20.5 kB)
Severity: medium
Fingerprint: 831cb76b8e05df461f028ace2e5c9b0cbf1ff21d75857e3c7b444ec17b444ec1
Indices: 4, document count: 569, size: 39.7 MB Found index .geoip_databases with 40 documents (39.5 MB) Found index folders with 102 documents (64.9 kB) Found index documents with 422 documents (76.4 kB) Found index leads with 5 documents (20.5 kB)
Severity: medium
Fingerprint: 831cb76b8e05df461cb499f6d1325db3c988539132d95fb1b4e59240b4e59240
Indices: 4, document count: 349, size: 39.7 MB Found index .geoip_databases with 40 documents (39.6 MB) Found index folders with 62 documents (55.1 kB) Found index documents with 242 documents (60.0 kB) Found index leads with 5 documents (20.5 kB)