PHPinfo page has been found in this directory. The PHPinfo page outputs a large amount of information about the current state of PHP.
This includes information about PHP compilation options and extensions, the PHP version, server information and environment (if compiled as a module), the PHP environment, OS version information, paths, master and local values of configuration options, HTTP headers, and the PHP License.
Environment variables may contain credentials.
Fingerprint: 2c44e2a6278fb0134173d6fa9043521680b27e41dcd2940dedd3876e643c0bd7
Found PHP info page: _SERVER["HTTP_X_FORWARDED_FOR"] = 161.35.188.242 _SERVER["HTTP_X_FORWARDED_PROTO"] = https _SERVER["HTTP_X_FORWARDED_PORT"] = 443 _SERVER["HTTP_HOST"] = 54.76.191.22 _SERVER["HTTP_X_AMZN_TRACE_ID"] = Root=1-61a678d5-33c0394e3a33158e4163dc85 _SERVER["HTTP_USER_AGENT"] = l9explore/1.3.0 _SERVER["HTTP_ACCEPT_ENCODING"] = gzip _SERVER["PATH"] = /sbin:/usr/sbin:/bin:/usr/bin _SERVER["SERVER_SIGNATURE"] = <address>Apache/2.2.34 (Amazon) Server at 54.76.191.22 Port 80</address> _SERVER["SERVER_SOFTWARE"] = Apache/2.2.34 (Amazon) _SERVER["SERVER_NAME"] = 54.76.191.22 _SERVER["SERVER_ADDR"] = 172.31.42.174 _SERVER["SERVER_PORT"] = 80 _SERVER["REMOTE_ADDR"] = 172.31.37.120 _SERVER["DOCUMENT_ROOT"] = /var/www/html/web _SERVER["SERVER_ADMIN"] = root@localhost _SERVER["SCRIPT_FILENAME"] = /var/www/html/web/info.php _SERVER["REMOTE_PORT"] = 47464 _SERVER["GATEWAY_INTERFACE"] = CGI/1.1 _SERVER["SERVER_PROTOCOL"] = HTTP/1.1 _SERVER["REQUEST_METHOD"] = GET _SERVER["QUERY_STRING"] = no value _SERVER["REQUEST_URI"] = /info.php _SERVER["SCRIPT_NAME"] = /info.php _SERVER["PHP_SELF"] = /info.php _SERVER["REQUEST_TIME"] = 1638299861
The application has Symfony verbose mode enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 05ab011356cc0208256bc95c87f674e2790f5977ac2761dd7b79ab63f03ee0ee
sf_admin_module_web_dir: /sfPropelPlugin sf_admin_web_dir: /sf/sf_admin sf_app: frontend sf_app_base_cache_dir: /var/www/html/cache/frontend sf_app_cache_dir: /var/www/html/cache/frontend/dev sf_app_config_dir: /var/www/html/apps/frontend/config sf_app_dir: /var/www/html/apps/frontend sf_app_i18n_dir: /var/www/html/apps/frontend/i18n sf_app_lib_dir: /var/www/html/apps/frontend/lib sf_app_module_dir: /var/www/html/apps/frontend/modules sf_app_template_dir: /var/www/html/apps/frontend/templates sf_apps_dir: /var/www/html/apps sf_cache: false sf_cache_dir: /var/www/html/cache sf_charset: utf-8 sf_check_lock: false sf_compressed: false sf_config_cache_dir: /var/www/html/cache/frontend/dev/config sf_config_dir: /var/www/html/config sf_csrf_secret: true sf_data_dir: /var/www/html/data sf_debug: true sf_default_culture: en sf_enable_mailer: false sf_enabled_modules: - default - default - captchagd - plusbutton - advertisement - sitemap - twittershare - webPlayer - webPlayerSubtitles - fblike - fbcomments - template - presets sf_environment: dev sf_error_404_action: error404 sf_error_404_module: start sf_error_reporting: 32767 sf_escaping_method: ESC_SPECIALCHARS sf_escaping_strategy: false sf_etag: true sf_file_link_format: null sf_i18n: true sf_i18n_cache_dir: /var/www/html/cache/frontend/dev/i18n sf_lib_dir: /var/www/html/lib sf_log_dir: /var/www/html/log sf_logging_enabled: true sf_login_action: login sf_login_module: user sf_module_cache_dir: /var/www/html/cache/frontend/dev/modules sf_module_disabled_action: disabled sf_module_disabled_module: default sf_no_script_name: false sf_orm: propel sf_plugins_dir: /var/www/html/plugins sf_root_dir: /var/www/html sf_secure_action: secure sf_secure_module: user sf_standard_helpers: - Partial - Partial - Cache - Cache - Text - Date - Number - I18N - JavascriptBase - JavascriptJQuery - Number - JavascriptBase - JavascriptJQuery - Number - JavascriptBase - JavascriptJQuery - Framework sf_symfony_lib_dir: /var/www/html/lib/symfony sf_template_cache_dir: /var/www/html/cache/frontend/dev/template sf_test_cache_dir: /var/www/html/cache/frontend/dev/test sf_test_dir: /var/www/html/test sf_upload_dir: /var/www/html/web/uploads sf_use_database: true sf_web_debug: true sf_web_debug_web_dir: /sf/sf_web_debug sf_web_dir: /var/www/html/web