Found
Duration
Date
IP
- Nikto --------------------------------------------------------------------------- + Multiple IPs found: 104.21.16.1, 104.21.112.1, 104.21.64.1, 104.21.32.1, 104.21.96.1, 104.21.48.1, 104.21.80.1, 2606:4700:3030::6815:4001, 2606:4700:3030::6815:1001, 2606:4700:3030::6815:5001, 2606:4700:3030::6815:2001, 2606:4700:3030::6815:3001, 2606:4700:3030::6815:7001, 2606:4700:3030::6815:6001 + Target IP: 104.21.16.1 + Target Hostname: unical.edu.ng + Target Port: 80 + Start Time: 2025-05-14 11:31:27 (GMT-7) --------------------------------------------------------------------------- + Server: cloudflare + /: Uncommon header 'server-timing' found, with contents: cfL4;desc="?proto=TCP&rtt=978&min_rtt=783&rtt_var=74&sent=211&recv=55&lost=0&retrans=0&sent_bytes=291419&recv_bytes=576&delivery_rate=71778836&cwnd=255&unsent_bytes=0&cid=0000000000000000&ts=0&x=0". + /: An alt-svc header was found which is advertising HTTP/3. The endpoint is: ':443'. Nikto cannot test HTTP/3 over QUIC. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/alt-svc + /: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/ + /: Web Server returns a valid response with junk HTTP methods which may cause false positives. + /: DEBUG HTTP verb may show server debugging information. See: https://docs.microsoft.com/en-us/visualstudio/debugger/how-to-enable-debugging-for-aspnet-applications?view=vs-2017 + /webmail/blank.html: IlohaMail 0.8.10 contains an XSS vulnerability. Previous versions contain other non-descript vulnerabilities. + Scan terminated: 0 error(s) and 6 item(s) reported on remote host + End Time: 2025-05-14 11:32:28 (GMT-7) (61 seconds) --------------------------------------------------------------------------- + 1 host(s) tested