Found
Duration
Date
IP
- Nikto v2.6.0
---------------------------------------------------------------------------
+ Your Nikto installation is out of date.
+ Target IP: 79.96.95.47
+ Target Hostname: rejestr.zs9elektronik.pl
+ Target Port: 443
---------------------------------------------------------------------------
+ SSL Info: Subject: /CN=*.zs9elektronik.pl
CN: *.zs9elektronik.pl
SAN: *.zs9elektronik.pl, zs9elektronik.pl
Ciphers: TLS_AES_256_GCM_SHA384
Issuer: /C=PL/O=home.pl S.A./CN=home pl DV TLS G2 R35 CA
+ Platform: Unknown
+ Start Time: 2026-02-22 14:30:39 (GMT-5)
---------------------------------------------------------------------------
+ Server: Apache
+ [999961] /: Cookie PHPSESSID created without the secure flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ [95] /: Cookie PHPSESSID created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ [750500] /icons/: Directory indexing found.
+ No CGI Directories found (use '-C all' to force check all possible dirs). CGI tests skipped.
+ [999100] /: Uncommon header(s) 'x-redirect-by' found, with contents: WordPress.
+ [000427] /images: Link header(s) found with value(s): <https://zs9elektronik.pl/wp-json/>; rel="https://api.w.org/". See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Link
+ [999962] /: Server banner changed from 'Apache' to 'nginx'.
+ [999966] /: The Content-Encoding header is set to "deflate" which may mean that the server is vulnerable to the BREACH attack. See: http://breachattack.com/
+ [013587] /: Suggested security header missing: strict-transport-security. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security
+ [013587] /: Suggested security header missing: content-security-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/CSP
+ [013587] /: Suggested security header missing: x-content-type-options. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Content-Type-Options
+ [013587] /: Suggested security header missing: referrer-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy
+ [013587] /: Suggested security header missing: permissions-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Permissions-Policy
+ Scan terminated: 0 errors and 12 items reported on the remote host
+ End Time: 2026-02-22 14:31:40 (GMT-5) (61 seconds)
---------------------------------------------------------------------------
+ 1 host(s) tested