Scan report for "thewineflyer.co.uk"

Membership level: Free member
Nikto no limit scan (nikto -host thewineflyer.co.uk)
- Nikto v2.5.0
---------------------------------------------------------------------------
+ Target IP:          63.141.128.12
+ Target Hostname:    thewineflyer.co.uk
+ Target Port:        80
+ Start Time:         2024-04-15 08:18:32 (GMT-4)
---------------------------------------------------------------------------
+ Server: cloudflare
+ /: Uncommon header 'bc-ray' found, with contents: 1.
+ /: Uncommon header 'x-request-id' found, with contents: 9fabb363a29234ffff5225eff443c852.
+ /: An alt-svc header was found which is advertising HTTP/3. The endpoint is: ':443'. Nikto cannot test HTTP/3 over QUIC. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/alt-svc
+ Root page / redirects to: https://thewineflyer.co.uk/
+ /nikto-test-yuON5TU7.html: Cookie fornax_anonymousId created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ /nikto-test-yuON5TU7.html: Cookie SF-CSRF-TOKEN created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ /nikto-test-yuON5TU7.html: Cookie XSRF-TOKEN created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ /nikto-test-yuON5TU7.html: Link header found with value: <https://cdn11.bigcommerce.com/s-eb2m0fdvaq>; rel=preconnect; as=font; crossorigin=anonymous, <https://fonts.googleapis.com/>; rel=preconnect; as=font; crossorigin=anonymous, <https://fonts.gstatic.com/>; rel=preconnect; as=font; crossorigin=anonymous, <https://fonts.googleapis.com/css?family=Karla:400%7CMontserrat:400,700,500&display=block>; rel=preload; as=style, <https://cdn11.bigcommerce.com/s-eb2m0fdvaq/stencil/f8ebecd0-d944-013c-d72e-32ec8a891f4e/e/76e1da50-bea8-013c-0e5b-5e0d088f8eef/css/theme-28b9b7e0-d945-013c-088c-22d27f2e2f5a.css>; rel=preload; as=style. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Link
+ /index.php?name=Forums&file=viewtopic&t=2&rush=%64%69%72&highlight=%2527.%70%61%73%73%74%68%72%75%28%24%48%54%54%50%5f%47%45%54%5f%56%41%52%53%5b%72%75%73%68%5d%29.%2527: Uncommon header 'cf-chl-out' found, with contents: Maem0Jbx4pmTJmoIA6ykvtHQ/twBxeq/dOCyTTKrQiH2x/H7OLMWPeCt3FxKw3g+wGjYeh31MskAxK7uRvmMF5uxHCAzyEZks54qxelnBaOF0HXZhTDZBynGcEuXxnznYRig9jmIOZPi9GwZIHJDVg==$OqzUitv9MBDusW8CkDpfDQ==.
+ /index.php?name=Forums&file=viewtopic&t=2&rush=%64%69%72&highlight=%2527.%70%61%73%73%74%68%72%75%28%24%48%54%54%50%5f%47%45%54%5f%56%41%52%53%5b%72%75%73%68%5d%29.%2527: Uncommon header 'origin-agent-cluster' found, with contents: ?1.
+ /index.php?name=Forums&file=viewtopic&t=2&rush=%64%69%72&highlight=%2527.%70%61%73%73%74%68%72%75%28%24%48%54%54%50%5f%47%45%54%5f%56%41%52%53%5b%72%75%73%68%5d%29.%2527: Uncommon header 'cf-mitigated' found, with contents: challenge.
+ /index.php?name=Forums&file=viewtopic&t=2&rush=%64%69%72&highlight=%2527.%70%61%73%73%74%68%72%75%28%24%48%54%54%50%5f%47%45%54%5f%56%41%52%53%5b%72%75%73%68%5d%29.%2527: Uncommon header 'accept-ch' found, with contents: Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA.
+ /cdn-cgi/trace: Retrieved access-control-allow-origin header: *.
+ /cdn-cgi/trace:X-Frame-Options header is deprecated and has been replaced with the Content-Security-Policy HTTP header with the frame-ancestors directive instead. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Frame-Options
+ /cdn-cgi/trace: Cloudflare trace CGI found, which may leak some system information.
+ 9657 requests: 0 error(s) and 14 item(s) reported on remote host
+ End Time:           2024-04-15 08:27:37 (GMT-4) (545 seconds)
---------------------------------------------------------------------------
+ 1 host(s) tested
Color Scheme
Target
thewineflyer.co.uk
Scan method
Nikto no limit scan
Run command
nikto -host thewineflyer.co.uk
Scan time
545s
Scan date
15 Apr 2024 08:27
Copy scan report
Download report
Remove scan result
$
Some firewalls blocks Nikto. For get true positive results add nikto.online IP addresses (172.96.166.66-172.96.166.70 or CIDR 172.96.166.64/29) to the whitelist
[scan_method]
Visibility:
Scan method: