nginx
tcp/443
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
The following Gitlab instance is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible to avoid account takeover.
Severity is mitigated by the need of a valid email address.
Reference:
Severity: high
Fingerprint: db64c48d331961cce5776b3a892edddd892edddd892edddd892edddd892edddd
Found vulnerable Gitlab instance Affected by CVE-2023-7028
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-22 05:11
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 05:11:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPCDZVBHPFCG4V897N15VMY","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPCDZVBHPFCG4V897N15VMY X-Runtime: 0.018166 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-22 04:31
HTTP/1.1 302 Found Server: nginx Date: Sun, 22 Dec 2024 04:31:42 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFPA59NYENG3606PVJTJQZDW","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFPA59NYENG3606PVJTJQZDW X-Runtime: 0.021474 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-21 23:21
HTTP/1.1 302 Found Server: nginx Date: Sat, 21 Dec 2024 23:21:16 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFNRCW27E67SR29F041H268R","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFNRCW27E67SR29F041H268R X-Runtime: 0.028900 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-20 01:23
HTTP/1.1 302 Found Server: nginx Date: Fri, 20 Dec 2024 01:23:33 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGTKBB1KWCCQPTXDQ73DZJA","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGTKBB1KWCCQPTXDQ73DZJA X-Runtime: 0.042933 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-19 23:00
HTTP/1.1 302 Found Server: nginx Date: Thu, 19 Dec 2024 23:00:50 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFGJE13G2PQJY1G5P587H3EZ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFGJE13G2PQJY1G5P587H3EZ X-Runtime: 0.026573 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-18 11:59
HTTP/1.1 302 Found Server: nginx Date: Wed, 18 Dec 2024 11:59:55 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFCT73Z7GSA689P3BS3Q6BXG","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFCT73Z7GSA689P3BS3Q6BXG X-Runtime: 0.019072 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-17 23:32
HTTP/1.1 302 Found Server: nginx Date: Tue, 17 Dec 2024 23:32:48 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JFBFF3TNN1N4TG52TYDHS7GZ","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JFBFF3TNN1N4TG52TYDHS7GZ X-Runtime: 0.111490 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-16 04:10
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 Dec 2024 04:10:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF6TJ7KMK21P586WPJEKMA0M","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF6TJ7KMK21P586WPJEKMA0M X-Runtime: 0.023122 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-15 22:02
HTTP/1.1 302 Found Server: nginx Date: Sun, 15 Dec 2024 22:02:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF65G4V39CEFB6F3WYBCJQVS","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF65G4V39CEFB6F3WYBCJQVS X-Runtime: 0.019107 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-14 04:58
HTTP/1.1 302 Found Server: nginx Date: Sat, 14 Dec 2024 04:58:20 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF1RG9WH978VDH5M2SVS5CPV","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF1RG9WH978VDH5M2SVS5CPV X-Runtime: 0.018672 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-13 21:53
HTTP/1.1 302 Found Server: nginx Date: Fri, 13 Dec 2024 21:54:03 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JF107D72HY59SKNPEVKWEM9M","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JF107D72HY59SKNPEVKWEM9M X-Runtime: 0.041968 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-12 11:24
HTTP/1.1 302 Found Server: nginx Date: Thu, 12 Dec 2024 11:24:07 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEX9S7YJR1H9P2DJDYMPD979","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEX9S7YJR1H9P2DJDYMPD979 X-Runtime: 0.016570 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-11 22:01
HTTP/1.1 302 Found Server: nginx Date: Wed, 11 Dec 2024 22:01:53 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JEVVWA4J7BRE1MFYMR0227EH","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JEVVWA4J7BRE1MFYMR0227EH X-Runtime: 0.016619 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-12-02 08:36
HTTP/1.1 302 Found Server: nginx Date: Mon, 02 Dec 2024 08:36:05 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE386CYDFCJS78T56KBGTMS6","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE386CYDFCJS78T56KBGTMS6 X-Runtime: 0.039133 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-12-01 21:46
HTTP/1.1 302 Found Server: nginx Date: Sun, 01 Dec 2024 21:46:07 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JE2308YVYX3PNR0MP7CAWHW0","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JE2308YVYX3PNR0MP7CAWHW0 X-Runtime: 0.043766 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-11-30 05:57
HTTP/1.1 302 Found Server: nginx Date: Sat, 30 Nov 2024 05:57:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDXTAD3V60NDBS6A8TQGSY7D","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDXTAD3V60NDBS6A8TQGSY7D X-Runtime: 0.018908 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443 · git.caizhiwei.cn
2024-11-28 20:15
HTTP/1.1 302 Found Server: nginx Date: Thu, 28 Nov 2024 20:16:01 GMT Content-Type: text/html; charset=utf-8 Content-Length: 104 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://git.caizhiwei.cn/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDT6N40WTHFVA160GW9A761Y","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDT6N40WTHFVA160GW9A761Y X-Runtime: 0.018734 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://git.caizhiwei.cn/users/sign_in">redirected</a>.</body></html>
Open service 8.217.183.242:443
2024-11-27 21:24
HTTP/1.1 302 Found Server: nginx Date: Wed, 27 Nov 2024 21:25:00 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101 Connection: close Cache-Control: no-cache Content-Security-Policy: Location: https://8.217.183.242/users/sign_in Permissions-Policy: interest-cohort=() X-Content-Type-Options: nosniff X-Download-Options: noopen X-Frame-Options: SAMEORIGIN X-Gitlab-Meta: {"correlation_id":"01JDQR6Q5KHHRWW0TNBNCCNDPW","version":"1"} X-Permitted-Cross-Domain-Policies: none X-Request-Id: 01JDQR6Q5KHHRWW0TNBNCCNDPW X-Runtime: 0.051907 X-Ua-Compatible: IE=edge X-Xss-Protection: 1; mode=block Strict-Transport-Security: max-age=63072000 Referrer-Policy: strict-origin-when-cross-origin <html><body>You are being <a href="https://8.217.183.242/users/sign_in">redirected</a>.</body></html>