185.9.147.200

Regular View Raw Data
Last Seen: 2024-04-19

GeneralInformation

Hostnames smartape.ru
shared-28.smartape.ru
Domains smartape.ru 
Country Russian Federation
City Moscow
Organization SmartApe OU
ISP LLC Smart Ape
ASN AS56694

WebTechnologies

Databases
Programming languages
UI frameworks

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2023-44487 7.5The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2022-31629 6.5In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the vulnerability enables network and same-site attackers to set a standard insecure cookie in the victim's browser which is treated as a `__Host-` or `__Secure-` cookie by PHP applications.
CVE-2022-31628 5.5In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
CVE-2021-3618 7.4ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certificates, such as multi-domain or wildcard certificates. A MiTM attacker having access to victim's traffic at the TCP/IP layer can redirect traffic from one subdomain to another, resulting in a valid TLS session. This breaks the authentication of TLS and cross-protocol attacks may be possible where the behavior of one protocol service may compromise the other at the application layer.
CVE-2020-11579 7.5An issue was discovered in Chadha PHPKB 9.0 Enterprise Edition. installer/test-connection.php (part of the installation process) allows a remote unauthenticated attacker to disclose local files on hosts running PHP before 7.2.16, or on hosts where the MySQL ALLOW LOCAL DATA INFILE option is enabled.
CVE-2017-8923 9.8The zend_string_extend function in Zend/zend_string.h in PHP through 7.1.5 does not prevent changes to string objects that result in a negative length, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact by leveraging a script's use of .= with a long string.
CVE-2013-2220 Buffer overflow in the radius_get_vendor_attr function in the Radius extension before 1.2.7 for PHP allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large Vendor Specific Attributes (VSA) length value.
CVE-2007-3205 The parse_str function in (1) PHP, (2) Hardened-PHP, and (3) Suhosin, when called without a second parameter, might allow remote attackers to overwrite arbitrary variables by specifying variable names and values in the string to be parsed. NOTE: it is not clear whether this is a design limitation of the function or a bug in PHP, although it is likely to be regarded as a bug in Hardened-PHP and Suhosin.
-1339929769 | 2024-04-19T22:53:04.310173
  
21 / tcp
-1694196334 | 2024-04-02T02:11:54.380168
  
25 / tcp
-527137276 | 2024-04-16T21:38:39.882076
  
53 / tcp
-527137276 | 2024-04-14T06:03:39.403486
  
53 / udp
1481939035 | 2024-04-14T04:19:41.961713
  
80 / tcp
-57774420 | 2024-04-14T04:54:07.540755
  
110 / tcp
-506930052 | 2024-04-15T09:00:39.764901
  
143 / tcp
893815684 | 2024-04-17T21:16:08.526988
  
443 / tcp
-600615354 | 2024-03-22T05:18:51.009959
  
465 / tcp
1196533020 | 2024-04-19T11:18:33.762379
  
587 / tcp
-1708341480 | 2024-04-13T19:44:33.914176
  
993 / tcp
-1830824801 | 2024-04-12T07:17:52.485859
  
995 / tcp
-679774274 | 2024-04-18T06:12:08.606801
  
3306 / tcp
1499661037 | 2024-04-10T17:06:05.965172
  
3310 / tcp



Contact Us

Shodan ® - All rights reserved