185.179.188.139

Regular View Raw Data
Last Seen: 2024-05-01

GeneralInformation

Hostnames steelgroup43.ru
static.139.188.179.185.ip.webhost1.net
Domains steelgroup43.ru webhost1.net 
Country Russian Federation
City Moscow
Organization Webhost LLC
ISP Webhost LLC
ASN AS44094

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2023-51766 Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not.
CVE-2023-44487 The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2022-37452 Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.
CVE-2022-37451 Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
CVE-2021-38371 5.0The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending.
CVE-2021-3618 5.8ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certificates, such as multi-domain or wildcard certificates. A MiTM attacker having access to victim's traffic at the TCP/IP layer can redirect traffic from one subdomain to another, resulting in a valid TLS session. This breaks the authentication of TLS and cross-protocol attacks may be possible where the behavior of one protocol service may compromise the other at the application layer.
CVE-2021-23017 6.8A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.
-1623614697 | 2024-04-19T05:06:02.884050
  
21 / tcp
724152350 | 2024-04-26T13:45:22.670227
  
22 / tcp
-2123848644 | 2024-04-30T05:04:54.317868
  
25 / tcp
-890414736 | 2024-04-29T13:01:22.652196
  
53 / tcp
669507008 | 2024-05-01T08:37:42.801555
  
80 / tcp
-1083873233 | 2024-04-14T02:53:44.045664
  
110 / tcp
445992501 | 2024-05-01T20:36:21.864913
  
123 / udp
175038010 | 2024-04-25T22:43:54.205165
  
143 / tcp
669507008 | 2024-04-28T21:16:01.277957
  
443 / tcp
-1263377051 | 2024-04-28T11:43:21.979741
  
465 / tcp
-231640353 | 2024-04-12T16:04:55.450674
  
587 / tcp
1117004044 | 2024-04-28T15:23:42.018021
  
993 / tcp
-1076830913 | 2024-05-01T10:48:49.429039
  
995 / tcp
669507008 | 2024-05-01T02:01:18.214655
  
3000 / tcp



Contact Us

Shodan ® - All rights reserved