HTTP/1.0 302 Redirect Server: GoAhead-Webs Date: Fri Sep 08 14:38:20 2023 Pragma: no-cache Cache-Control: no-cache Content-Type: text/html Location: http://192.168.235.45/index.asp
This document has moved to a new location. Please update your documents to reflect the new location.200 GET 14l 23w 229c http://192.168.235.45/goform/formLogin
200 GET 36l 251w 2525c http://192.168.235.45/CStyle/Theme.css
200 GET 14l 19w 190c http://192.168.235.45/Contents/index.asp
200 GET 154l 336w 4223c http://192.168.235.45/index.asp
200 GET 154l 336w 4224c http://192.168.235.45/Index.asp
200 GET 4l 15w 193c http://192.168.235.45/cgi-bin
200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.txt
200 GET 4l 18w 209c http://192.168.235.45/cgi-bin/
200 GET 4l 15w 194c http://192.168.235.45/cgi-bin2
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin.html
200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.txt
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.txt
200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.php
200 GET 4l 18w 214c http://192.168.235.45/cgi-bin/.html
200 GET 4l 15w 199c http://192.168.235.45/cgi-bin2.html
200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.asp
200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.php
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.php
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin.aspx
200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.asp
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.asp
200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.jsp
200 GET 4l 18w 214c http://192.168.235.45/cgi-bin/.aspx
200 GET 4l 15w 199c http://192.168.235.45/cgi-bin2.aspx
200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.jsp
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.jsp
200 GET 71l 133w 1553c http://192.168.235.45/contents/menu.asp
200 GET 8l 20w 270c http://192.168.235.45/contents/topFrame.html
200 GET 14l 27w 338c http://192.168.235.45/contents/frameDivider.asp
200 GET 23l 49w 396c http://192.168.235.45/contents/UPS/blank.asp
200 GET 17l 80w 790c http://192.168.235.45/contents/index.asp
200 GET 0l 0w 0c http://192.168.235.45/nul
200 GET 0l 0w 0c http://192.168.235.45/nul.txt
200 GET 0l 0w 0c http://192.168.235.45/nul.html
200 GET 0l 0w 0c http://192.168.235.45/nul.php
200 GET 0l 0w 0c http://192.168.235.45/nul.asp
200 GET 0l 0w 0c http://192.168.235.45/nul.aspx
200 GET 0l 0w 0c http://192.168.235.45/nul.jsp
200 GET 4l 15w 200c http://192.168.235.45/cgi-bin-church
200 GET 4l 15w 199c http://192.168.235.45/cgi-bin-debug
200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-church.txt
200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.txt
200 GET 4l 15w 205c http://192.168.235.45/cgi-bin-church.html
200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-debug.html
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin-live
200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-church.php
200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.php 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.txt 200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-church.asp 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.asp 200 GET 4l 15w 197c http://192.168.235.45/cgi-bin_ssl 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-live.html 200 GET 4l 15w 205c http://192.168.235.45/cgi-bin-church.aspx 200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-debug.aspx 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.txt 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.php 200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-church.jsp 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.jsp 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin_ssl.html 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.asp 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.php 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-live.aspx 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.asp 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.jsp 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin_ssl.aspx 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.jsp 200 GET 17l 80w 790c http://192.168.235.45/Contents/index.asp 200 GET 36l 251w 2525c http://192.168.235.45/CStyle/Theme.css 200 GET 14l 23w 229c http://192.168.235.45/goform/formLogin 200 GET 154l 336w 4223c http://192.168.235.45/index.asp 200 GET 154l 336w 4223c http://192.168.235.45/Index.asp 200 GET 4l 15w 193c http://192.168.235.45/cgi-bin 200 GET 4l 18w 209c http://192.168.235.45/cgi-bin/ 200 GET 4l 15w 194c http://192.168.235.45/cgi-bin2 200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.txt 200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.txt 200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.txt 200 GET 4l 15w 198c http://192.168.235.45/cgi-bin.html 200 GET 4l 18w 214c http://192.168.235.45/cgi-bin/.html 200 GET 4l 15w 199c http://192.168.235.45/cgi-bin2.html 200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.php 200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.php 200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.php 200 GET 4l 15w 197c http://192.168.235.45/cgi-bin.asp 200 GET 4l 15w 198c http://192.168.235.45/cgi-bin2.asp 200 GET 4l 18w 213c http://192.168.235.45/cgi-bin/.asp
200 GET 14l 27w 338c http://192.168.235.45/contents/frameDivider.asp 200 GET 71l 133w 1553c http://192.168.235.45/contents/menu.asp 200 GET 8l 20w 270c http://192.168.235.45/contents/topFrame.html 200 GET 23l 49w 396c http://192.168.235.45/contents/UPS/blank.asp 200 GET 17l 80w 790c http://192.168.235.45/contents/index.asp 200 GET 0l 0w 0c http://192.168.235.45/nul
200 GET 0l 0w 0c http://192.168.235.45/nul.txt
200 GET 0l 0w 0c http://192.168.235.45/nul.html
200 GET 0l 0w 0c http://192.168.235.45/nul.php
200 GET 0l 0w 0c http://192.168.235.45/nul.asp
200 GET 0l 0w 0c http://192.168.235.45/nul.aspx
200 GET 0l 0w 0c http://192.168.235.45/nul.jsp
200 GET 4l 15w 200c http://192.168.235.45/cgi-bin-church
200 GET 4l 15w 198c http://192.168.235.45/cgi-bin-live
200 GET 4l 15w 199c http://192.168.235.45/cgi-bin-debug
200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-church.txt 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.txt 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.txt 200 GET 4l 15w 197c http://192.168.235.45/cgi-bin_ssl
200 GET 4l 15w 205c http://192.168.235.45/cgi-bin-church.html 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-live.html 200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-debug.html 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.txt 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.php 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.php 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin_ssl.html 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.asp 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.asp 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.php 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.asp 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-live.aspx 200 GET 4l 15w 204c http://192.168.235.45/cgi-bin-debug.aspx 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin_ssl.aspx 200 GET 4l 15w 202c http://192.168.235.45/cgi-bin-live.jsp 200 GET 4l 15w 203c http://192.168.235.45/cgi-bin-debug.jsp 200 GET 4l 15w 201c http://192.168.235.45/cgi-bin_ssl.jsp
- Target IP: 192.168.235.45
- Target Hostname: 192.168.235.45
- Target Port: 80
- Start Time: 2023-09-08 14:38:24 (GMT-7)
- Server: GoAhead-Webs
- /: The anti-clickjacking X-Frame-Options header is not present. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Frame-Options
- /: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/
- Root page / redirects to: http://192.168.235.45/index.asp
- GoAhead-Webs - This may be a Cyclade, http://www.cyclades.com/.
- /cgi-bin/dose.pl?daily&somefile.txt&|ls|: DailyDose 1.1 is vulnerable to a directory traversal attack in the ‘list’ parameter. See: OSVDB-2799
- /cgi-bin-sdb/dose.pl?daily&somefile.txt&|ls|: DailyDose 1.1 is vulnerable to a directory traversal attack in the ‘list’ parameter. See: OSVDB-2799
- ERROR: Error limit (20) reached for host, giving up. Last error:
- Scan terminated: 6 error(s) and 5 item(s) reported on remote host
- End Time: 2023-09-08 14:49:00 (GMT-7) (636 seconds)
PORT STATE SERVICE REASON VERSION
80/tcp open http syn-ack ttl 125 GoAhead WebServer
| http-headers:
| Date: Fri Sep 08 14:38:32 2023
| Server: GoAhead-Webs
| Pragma: no-cache
| Cache-Control: no-cache
| Content-type: text/html
|
|_ (Request type: HEAD)
| http-sitemap-generator:
| Directory structure:
| /
| asp: 1
| /CStyle/
| css: 1
| Longest directory structure:
| Depth: 1
| Dir: /CStyle/
| Total files found (by extension):
|_ asp: 1; css: 1
|http-stored-xss: Couldn’t find any stored XSS vulnerabilities.* | http-enum:** | /cgi-bin/mj_wwwusr: Majordomo2 Mailing List** |* /cgi-bin/vcs: Mitel Audio and Web Conferencing (AWC) |_http-wordpress-users: [Error] Wordpress installation was not found. We couldn’t find wp-login.php |_http-chrono: Request times for /index.asp; avg: 432.69ms; min: 387.72ms; max: 464.56ms |http-malware-host: Host appears to be clean* | http-methods:** |* Supported Methods: GET HEAD |_http-wordpress-enum: Nothing found amongst the top 100 resources,use —script-args search-limit=<number|all> for deeper analysis) |_http-jsonp-detection: Couldn’t find any JSONP endpoints.
http-backup-finder:
| Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=192.168.235.45
| http://192.168.235.45:80/CStyle/Theme.bak
| http://192.168.235.45:80/CStyle/Theme.css~
| http://192.168.235.45:80/CStyle/Theme copy.css
| http://192.168.235.45:80/CStyle/Copy of Theme.css
| http://192.168.235.45:80/CStyle/Copy (2) of Theme.css
| http://192.168.235.45:80/CStyle/Theme.css.1
|_ http://192.168.235.45:80/CStyle/Theme.css.1
|_http-referer-checker: Couldn’t find any cross-domain scripts.
|_http-date: Fri Sep 08 14:38:34 2023; -7h00m02s from local time.
|http-drupal-enum: Nothing found amongst the top 100 resources,use —script-args number=<number|all> for deeper analysis)
|http-devframework: Couldn’t determine the underlying framework or CMS. Try increasing ‘httpspider.maxpagecount’ value to spider more pages.
| http-csrf:
| Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=192.168.235.45
| Found the following possible CSRF vulnerabilities:
|
| Path: http://192.168.235.45:80/index.asp
| Form id:
|* Form action: /goform/formLogin
| http-auth-finder:
| Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=192.168.235.45
| url method
|* http://192.168.235.45:80/index.asp FORM
|_http-errors: Couldn’t find any error pages.
| http-vhosts:
| mx0
| secure
|_126 names had status 302
|_http-majordomo2-dir-traversal: ERROR: Script execution failed (use -d to debug)
|_http-fetch: Please enter the complete path of the directory to save data in.
| http-waf-detect: IDS/IPS/WAF detected:
|_192.168.235.45:80/?p4yl04d3=<script>alert(document.cookie)</script>
| http-useragent-tester:
| Status for browser useragent: 200
| Redirected To: http://192.168.235.45/index.asp
| Allowed User Agents:
| Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)
| libwww
| lwp-trivial
| libcurl-agent/1.0
| PHP/
| Python-urllib/2.5
| GT::WWW
| Snoopy
| HTTP::Lite
| PHPCrawl
URI::Fetch | Zend_Http_Client | http client | PECL::HTTP | Wget/1.13.4 (linux-gnu) |_ WWW-Mechanize/1.34 |http-mobileversion-checker: No mobile version detected. | http-security-headers: | Cache_Control: | Header: Cache-Control: no-cache | Pragma: | Header: Pragma: no-cache |_http-feed: Couldn’t find any feeds. |_http-litespeed-sourcecode-download: Request with null byte did not work. This web server might not be vulnerable |_http-server-header: GoAhead-Webs | http-comments-displayer: | Spidering limited to: maxdepth=3; maxpagecount=20; withinhost=192.168.235.45 |
| Path: http://192.168.235.45:80/index.asp | Line number: 92 | Comment: | |
| Path: http://192.168.235.45:80/index.asp | Line number: 102 | Comment: | |
| Path: http://192.168.235.45:80/CStyle/Theme.css | Line number: 16 | Comment: | /* a unique set for dialog type displays, used most often / |* | Path: http://192.168.235.45:80/index.asp | Line number: 120 | Comment: | |** | Path: http://192.168.235.45:80/CStyle/Theme.css | Line number: 8 | Comment: | /* 1st we cover the background color of a page for our three major display frames */ | | Path: http://192.168.235.45:80/index.asp | Line number: 15 | Comment:
| //—> |
| Path: http://192.168.235.45:80/CStyle/Theme.css | Line number: 2 | Comment: | /* default values for selected tags, Note: without background color defined! / |* | Path: http://192.168.235.45:80/index.asp | Line number: 106 | Comment: | |** | Path: http://192.168.235.45:80/CStyle/Theme.css | Line number: 33 | Comment: | /* a unique set for tab navigation displays / |* | Path: http://192.168.235.45:80/CStyle/Theme.css | Line number: 25 | Comment: | /* a unique set for error type displays */ | | Path: http://192.168.235.45:80/index.asp | Line number: 113 | Comment: |_ | http-php-version: Logo query returned unknown hash f2e994909f2e4a9a57fa173ef08e0894 |_Credits query returned unknown hash f2e994909f2e4a9a57fa173ef08e0894 |_http-dombased-xss: Couldn’t find any DOM based XSS. |_http-config-backup: ERROR: Script execution failed (use -d to debug)
WhatWeb report for http://192.168.235.45/index.asp Status : 200 OK Title : HP Power Manager IP : 192.168.235.45 Country : RESERVED, ZZ
Summary : GoAhead-Webs, HTTPServer[GoAhead-Webs], PasswordField[Password], Script[text/javascript]
Detected Plugins: [ GoAhead-Webs ] Opensource, embedded webserver
Website : <http://embedthis.com/products/goahead/>
[ HTTPServer ] HTTP server header string. This plugin also attempts to identify the operating system from the server header.
String : GoAhead-Webs (from server string)
[ PasswordField ] find password fields
String : Password (from field name)
[ Script ] This plugin detects instances of script HTML elements and returns the script language/type.
String : text/javascript
HTTP Headers: HTTP/1.0 200 OK Date: Fri Sep 08 14:38:25 2023 Server: GoAhead-Webs Pragma: no-cache Cache-Control: no-cache Content-type: text/html
WhatWeb report for http://192.168.235.45:80
Status : 302 Found
Title :
IP : 192.168.235.45
Country : RESERVED, ZZ
Summary : GoAhead-Webs, HTTPServer[GoAhead-Webs], RedirectLocation[http://192.168.235.45/index.asp]
Detected Plugins:
[ GoAhead-Webs ]
Opensource, embedded webserver
Website : <http://embedthis.com/products/goahead/>
[ HTTPServer ]
HTTP server header string. This plugin also attempts to
identify the operating system from the server header.
String : GoAhead-Webs (from server string)
[ RedirectLocation ]
HTTP Server string location. used with http-status 301 and
302
String : <http://192.168.235.45/index.asp> (from location)
HTTP Headers:
HTTP/1.0 302 Redirect
Server: GoAhead-Webs Date: Fri Sep 08 14:38:24 2023 Pragma: no-cache Cache-Control: no-cache Content-Type: text/html Location: http://192.168.235.45/index.asp