- Nikto --------------------------------------------------------------------------- + Multiple IPs found:,, 2a00:86c0:2090::1, 2a00:86c0:2091::1 + Target IP: + Target Hostname: secure.netflix.com + Target Port: 80 + Start Time: 2024-11-20 02:19:10 (GMT-5) --------------------------------------------------------------------------- + Server: nginx + /: Retrieved access-control-allow-origin header: *. + /: IP address found in the 'x-tcp-info' header. The IP is "". See: https://portswigger.net/kb/issues/00600300_private-ip-addresses-disclosed + /: Uncommon header 'x-tcp-info' found, with contents: addr=;port=53164;sc=. + All CGI directories 'found', use '-C none' to test none + /clientaccesspolicy.xml: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/ + /clientaccesspolicy.xml contains 46 lines which should be manually viewed for improper domains or wildcards. See: https://www.acunetix.com/vulnerabilities/web/insecure-clientaccesspolicy-xml-file/ + 26583 requests: 0 error(s) and 5 item(s) reported on remote host + End Time: 2024-11-20 02:20:10 (GMT-5) (60 seconds) --------------------------------------------------------------------------- + 1 host(s) tested