Nikto scan (max 60 sec) (nikto -host megacable.com.mx -maxtime 60)
- Nikto v2.5.0
---------------------------------------------------------------------------
+ Multiple IPs found: 34.194.182.243, 3.232.232.13
+ Target IP: 34.194.182.243
+ Target Hostname: megacable.com.mx
+ Target Port: 80
+ Start Time: 2024-08-25 20:29:53 (GMT-4)
---------------------------------------------------------------------------
+ Server: Apache/2.4.58 (Amazon Linux)
+ /: Cookie PHPSESSID created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ Root page / redirects to: https://megacable.com.mx/
+ /robots.txt: The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type. See: https://www.netsparker.com/web-vulnerability-scanner/vulnerabilities/missing-content-type-header/
+ : Server banner changed from 'Apache/2.4.58 (Amazon Linux)' to 'awselb/2.0'.
+ /inc/config.php: Bookmark4U v1.8.3 include files are not protected and may contain remote source injection by using the 'prefix' variable. See: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1253
+ /sitemap.xml: This gives a nice listing of the site content.
+ /pdf/: Directory indexing found.
+ /css/: Directory indexing found.
+ /css/: This might be interesting.
+ /files/: Directory indexing found.
+ /files/: This might be interesting.
+ /img/: Directory indexing found.
+ /img/: This might be interesting.
+ /pruebas/: This might be interesting.
+ /temp/: Directory indexing found.
+ /temp/: This might be interesting.
+ /icons/: Directory indexing found.
+ /images/: Directory indexing found.
+ /icons/README: Apache default file found. See: https://www.vntweb.co.uk/apache-restricting-access-to-iconsreadme/
+ Scan terminated: 0 error(s) and 18 item(s) reported on remote host
+ End Time: 2024-08-25 20:30:54 (GMT-4) (61 seconds)
---------------------------------------------------------------------------
+ 1 host(s) tested