- Nikto --------------------------------------------------------------------------- + Target IP: 162.241.216.11 + Target Hostname: certifiedhacker.com + Target Port: 80 + Start Time: 2025-11-27 11:11:12 (GMT-8) --------------------------------------------------------------------------- + Server: nginx/1.27.2 + /: Uncommon header 'x-server-cache' found, with contents: true. + /: Uncommon header 'x-proxy-cache' found, with contents: HIT. + /: Uncommon header 'host-header' found, with contents: c2hhcmVkLmJsdWVob3N0LmNvbQ==. + /: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/ + : Server banner changed from 'nginx/1.27.2' to 'Apache'. + /certifiedhacker.zip: Potentially interesting backup/cert file found. . See: https://cwe.mitre.org/data/definitions/530.html + OPTIONS: Allowed HTTP Methods: POST, OPTIONS, HEAD, GET . + /webmail/blank.html: IlohaMail 0.8.10 contains an XSS vulnerability. Previous versions contain other non-descript vulnerabilities. + /securecontrolpanel/: Web Server Control Panel. + /webmail/: Web based mail package installed. + Scan terminated: 0 error(s) and 10 item(s) reported on remote host + End Time: 2025-11-27 11:12:13 (GMT-8) (61 seconds) --------------------------------------------------------------------------- + 1 host(s) tested