Found
Duration
Date
IP
- Nikto --------------------------------------------------------------------------- + Target IP: 72.167.125.101 + Target Hostname: supergarzon.com + Target Port: 80 + Start Time: 2025-06-24 01:45:51 (GMT-7) --------------------------------------------------------------------------- + Server: Apache + Root page / redirects to: https://www.supergarzon.com/site/ + /site/typo3conf/: Retrieved x-powered-by header: PHP/7.3.33. + /webmail/horde/test.php: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/ + /webmail/blank.html: IlohaMail 0.8.10 contains an XSS vulnerability. Previous versions contain other non-descript vulnerabilities. + /securecontrolpanel/: Web Server Control Panel. + /webmail/: Web based mail package installed. + /sitemap.xml: Server may leak inodes via ETags, header found with file /sitemap.xml, inode: 14815424, size: 502, mtime: Tue Apr 5 12:38:58 2022. See: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1418 + /sitemap.xml: This gives a nice listing of the site content. + /cpanel/: Web-based control panel. See: OSVDB-2117 + /img-sys/: Default image directory should not allow directory listing. + Scan terminated: 0 error(s) and 9 item(s) reported on remote host + End Time: 2025-06-24 01:46:52 (GMT-7) (61 seconds) --------------------------------------------------------------------------- + 1 host(s) tested