The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65225bec0e35
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = codecommit::eu-west-1://acti-labs-website fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "dev"] remote = origin merge = refs/heads/dev
The following URL (usually /.git/config
) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a65225bec0e35
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = codecommit::eu-west-1://acti-labs-website fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "dev"] remote = origin merge = refs/heads/dev
PHPinfo page has been found in this directory. The PHPinfo page outputs a large amount of information about the current state of PHP.
This includes information about PHP compilation options and extensions, the PHP version, server information and environment (if compiled as a module), the PHP environment, OS version information, paths, master and local values of configuration options, HTTP headers, and the PHP License.
Environment variables may contain credentials.
Fingerprint: 2c44e2a6278fb0134173d6faa21d0a8683f464344ce7f76cd2093bc5848c2764
Found PHP info page: _SERVER["HTTP_HOST"] = 54.74.60.17 _SERVER["HTTP_ACCEPT_ENCODING"] = gzip _SERVER["HTTP_USER_AGENT"] = l9explore/1.3.0 _SERVER["HTTP_X_FORWARDED_FOR"] = 161.35.86.181 _SERVER["HTTP_X_FORWARDED_PORT"] = 80 _SERVER["HTTP_X_FORWARDED_PROTO"] = http _SERVER["HTTP_CONNECTION"] = keep-alive _SERVER["PATH"] = /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin _SERVER["SERVER_SIGNATURE"] = <address>Apache/2.4.18 (Ubuntu) Server at 54.74.60.17 Port 80</address> _SERVER["SERVER_SOFTWARE"] = Apache/2.4.18 (Ubuntu) _SERVER["SERVER_NAME"] = 54.74.60.17 _SERVER["SERVER_ADDR"] = 172.31.13.86 _SERVER["SERVER_PORT"] = 80 _SERVER["REMOTE_ADDR"] = 172.31.45.81 _SERVER["DOCUMENT_ROOT"] = /var/www/html _SERVER["REQUEST_SCHEME"] = http _SERVER["CONTEXT_PREFIX"] = no value _SERVER["CONTEXT_DOCUMENT_ROOT"] = /var/www/html _SERVER["SERVER_ADMIN"] = webmaster@localhost _SERVER["SCRIPT_FILENAME"] = /var/www/html/info.php _SERVER["REMOTE_PORT"] = 64270 _SERVER["GATEWAY_INTERFACE"] = CGI/1.1 _SERVER["SERVER_PROTOCOL"] = HTTP/1.1 _SERVER["REQUEST_METHOD"] = GET _SERVER["QUERY_STRING"] = no value _SERVER["REQUEST_URI"] = /info.php _SERVER["SCRIPT_NAME"] = /info.php _SERVER["PHP_SELF"] = /info.php _SERVER["REQUEST_TIME_FLOAT"] = 1666826963.994 _SERVER["REQUEST_TIME"] = 1666826963
PHPinfo page has been found in this directory. The PHPinfo page outputs a large amount of information about the current state of PHP.
This includes information about PHP compilation options and extensions, the PHP version, server information and environment (if compiled as a module), the PHP environment, OS version information, paths, master and local values of configuration options, HTTP headers, and the PHP License.
Environment variables may contain credentials.
Fingerprint: 2c44e2a6278fb0134173d6faa21d0a8683f464344ce7f76c692b9650d319548b
Found PHP info page: _SERVER["HTTP_HOST"] = 54.74.60.17 _SERVER["HTTP_ACCEPT_ENCODING"] = gzip _SERVER["HTTP_USER_AGENT"] = l9explore/1.3.0 _SERVER["HTTP_X_FORWARDED_FOR"] = 161.35.188.242 _SERVER["HTTP_X_FORWARDED_PORT"] = 443 _SERVER["HTTP_X_FORWARDED_PROTO"] = https _SERVER["HTTP_CONNECTION"] = keep-alive _SERVER["PATH"] = /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin _SERVER["SERVER_SIGNATURE"] = <address>Apache/2.4.18 (Ubuntu) Server at 54.74.60.17 Port 80</address> _SERVER["SERVER_SOFTWARE"] = Apache/2.4.18 (Ubuntu) _SERVER["SERVER_NAME"] = 54.74.60.17 _SERVER["SERVER_ADDR"] = 172.31.13.86 _SERVER["SERVER_PORT"] = 80 _SERVER["REMOTE_ADDR"] = 172.31.45.81 _SERVER["DOCUMENT_ROOT"] = /var/www/html _SERVER["REQUEST_SCHEME"] = http _SERVER["CONTEXT_PREFIX"] = no value _SERVER["CONTEXT_DOCUMENT_ROOT"] = /var/www/html _SERVER["SERVER_ADMIN"] = webmaster@localhost _SERVER["SCRIPT_FILENAME"] = /var/www/html/info.php _SERVER["REMOTE_PORT"] = 24688 _SERVER["GATEWAY_INTERFACE"] = CGI/1.1 _SERVER["SERVER_PROTOCOL"] = HTTP/1.1 _SERVER["REQUEST_METHOD"] = GET _SERVER["QUERY_STRING"] = no value _SERVER["REQUEST_URI"] = /info.php _SERVER["SCRIPT_NAME"] = /info.php _SERVER["PHP_SELF"] = /info.php _SERVER["REQUEST_TIME_FLOAT"] = 1666663411.966 _SERVER["REQUEST_TIME"] = 1666663411