Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.
HTTP/1.1 200 OK Date: Sat, 08 Feb 2025 08:48:13 GMT Server: Apache/2.4.39 (Win64) mod_fcgid/2.3.9 OpenSSL/1.1.1b X-Powered-By: PHP/7.3.6 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Set-Cookie: PHPSESSID=tj2iodop8ed9vkag4bo5fb30m6; path=/ Vary: Accept-Encoding,User-Agent Transfer-Encoding: chunked Content-Type: text/html;charset=utf-8
HTTP/1.1 400 Bad Request CONNECTION: close CONTENT-LENGTH: 61 X-XSS-Protection: 1;mode=block Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' X-Content-Type-Options: nosniff CONTENT-TYPE: text/html <html><body><h1>Please use https to access</h1></body></html>
HTTP/1.1 200 OK CONNECTION: close Date: Wed, 15 Jan 2025 23:51:48 GMT Last-Modified: Tue, 28 Feb 2023 01:09:00 GMT Etag: "1677546540:260" CONTENT-LENGTH: 608 CACHE-CONTROL: max-age=0 X-Frame-Options: SAMEORIGIN Strict-Transport-Security: max-age=604800; includeSubDomains X-XSS-Protection: 1;mode=block Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval' X-Content-Type-Options: nosniff CONTENT-TYPE: text/html Dahua-based DH-ASI41KH-M: Web Version: 3.2.1.155057
Shodan ® - All rights reserved