SuperFREAK | Date: Cetvrtak, 2011-12-15, 4:29 AM | Message # 1 |
Private
Group: Korisnici
Messages: 2
Status: Offline
| This report gives details on hosts that were tested and issues that were found. Please follow the recommended steps and procedures to eradicate these threats. Scan Result Hosts which were alive and responding during test 1 Number of security holes found 0 Number of security warnings found 1 Number of security notes found 15 Host List Host(s) Possible Issue www.biohazard-hack.ucoz.com Security warnings found Host Summary- OS: Unknown OS; PORT/TCP: 21, 22, 53, 80 [return to top] Analysis of Host: www.biohazard-hack.ucoz.com Address of Host Port/Service Issue regarding Port www.biohazard-hack.ucoz.com www (80/tcp) Security notes found www.biohazard-hack.ucoz.com ssh (22/tcp) Security notes found www.biohazard-hack.ucoz.com ftp (21/tcp) Security notes found www.biohazard-hack.ucoz.com domain (53/tcp) Security notes found www.biohazard-hack.ucoz.com tcp Security notes found www.biohazard-hack.ucoz.com domain (53/udp) Security notes found www.biohazard-hack.ucoz.com dns (53/tcp) Security warnings found www.biohazard-hack.ucoz.com dns (53/udp) Security notes found Security Issues and Fixes: www.biohazard-hack.ucoz.com Type Port/Service Security Issues and Fixes Informational www (80/tcp) Services A web server is running on this port Here is its banner : HTTP/1.1 404 Not Found Server: uServ/1.5.4 Date: Thu, 15 Dec 2011 00:14:31 GMT Content-Type: text/html charset=UTF-8 Content-Length: 936 Connection: close <html><head> <meta name="robots" content="noindex,nofollow"> <title>HTTP 404 Not found</title> <style> body, td {font-family:Tahoma,Arial font-size:9pt } a:link {text-decoration:underline color:#0000FF} a:visited {text-decoration:underline color:#0000FF} a:hover {text-decoration:underl NESSUS_ID : 10330 Informational www (80/tcp) Directory Scanner The following directories were discovered: /mail, /poll, /secure, /stat, /informer While this is not, in and of itself, a bug, you should manually inspect these directories to ensure that they are in compliance with company security standards NESSUS_ID : 11032 Other references : OWASP:OWASP-CM-006 Informational www (80/tcp) HTTP Server type and version The remote web server type is : uServ/1.5.4
NESSUS_ID : 10107 Informational www (80/tcp) robot(s).txt exists on the Web Server
Some Web Servers use a file called /robot(s).txt to make search engines and any other indexing tools visit their WebPages more frequently and more efficiently.
By connecting to the server and requesting the /robot(s).txt file, an attacker may gain additional information about the system they are attacking.
Such information as, restricted directories, hidden directories, cgi script directories and etc. Take special care not to tell the robots not to index sensitive directories, since this tells attackers exactly which of your directories are sensitive.
|
|
| |
aki | Date: Ponedeljak, 2012-12-17, 11:06 PM | Message # 2 |
Private
Group: Korisnici
Messages: 1
Status: Offline
| ima rupa veruj mi ima detaljan tut kako da hack sajt ucoz bilo koji
|
|
| |