- Nikto --------------------------------------------------------------------------- + Target IP: 208.90.188.162 + Target Hostname: www.portlandtx.com + Target Port: 80 + Start Time: 2025-07-14 23:10:56 (GMT-7) --------------------------------------------------------------------------- + Server: Microsoft-IIS/10.0 + /: Cookie CP_IsMobile created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies + /robots.txt: Entry '/Search/' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file + Server may be vulnerable to https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/MS10-070 (based on numeric calculation) and thus may allow a cryptographic padding oracle. This vulnerability must be manually validated. See: http://blog.gdssecurity.com/labs/2010/9/14/automated-padding-oracle-attacks-with-padbuster.html + /robots.txt: Entry '/RSS.aspx' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file + /robots.txt: Entry '/Map.aspx' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file + /robots.txt: Entry '/map.aspx' is returned a non-forbidden or redirect HTTP code (200). See: https://portswigger.net/kb/issues/00600600_robots-txt-file + /robots.txt: contains 25 entries which should be manually viewed. See: https://developer.mozilla.org/en-US/docs/Glossary/Robots.txt + /wwwportlandtxcom.tar.gz: Retrieved x-powered-by header: ASP.NET. + /: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/ + /EWS/Exchange.asmx: Retrieved x-aspnet-version header: 4.0.30319. + /aspnet_client: The web server may reveal its internal or real IP in the Location header via a request to with HTTP/1.0. The value is "10.2.8.162". See: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0649 + Scan terminated: 0 error(s) and 11 item(s) reported on remote host + End Time: 2025-07-14 23:11:57 (GMT-7) (61 seconds) --------------------------------------------------------------------------- + 1 host(s) tested