Hostnames |
astro.com www.astro.com |
Domains | astro.com |
Country | Switzerland |
City | Zollikon |
Organization | Astrodienst AG |
ISP | Swisscom (Schweiz) AG |
ASN | AS3303 |
Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.
CVE-2020-23064 | Cross Site Scripting vulnerability in jQuery 2.2.0 through 3.x before 3.5.0 allows a remote attacker to execute arbitrary code via the <options> element. |
CVE-2020-11023 | 4.3In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0. |
CVE-2020-11022 | 4.3In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0. |
CVE-2019-11358 | 4.3jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype. |
587463701 | 2024-04-21T10:00:17.88666580 / tcp
HTTP/1.1 301 Moved Permanently Date: Sun, 21 Apr 2024 10:00:16 GMT Server: Apache Location: https://www.astro.com/horoscope Content-Length: 302 Content-Type: text/html; charset=iso-8859-1
-820896370 | 2024-04-20T15:03:38.322334443 / tcp
HTTP/1.1 200 OK Date: Sat, 20 Apr 2024 15:03:38 GMT Server: Apache Expires: Sat, 20 Apr 2024 15:03:38 GMT Pragma: no-cache Cache-control: no-cache, must-revalidate X-frame-options: deny Vary: Accept-Encoding Transfer-Encoding: chunked Content-Type: text/html; charset=UTF-8
Certificate: Data: Version: 3 (0x2) Serial Number: 12:35:71:38:ad:08:2f:e5:75:e1:d3:40:fe:27:3c:19 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA Validity Not Before: Jun 5 00:00:00 2023 GMT Not After : Jul 1 23:59:59 2024 GMT Subject: serialNumber=CHE-105.913.150/jurisdictionC=CH/businessCategory=Private Organization, C=CH, ST=Z\xC3\xBCrich, O=Astrodienst AG, CN=www.astro.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:de:9d:18:9a:61:33:12:b3:35:04:30:14:b8:c7: e3:6b:51:b6:3c:ce:f1:f7:ab:50:b7:a0:35:8c:6d: b9:07:9c:4c:d4:c4:74:de:86:64:fe:f2:c3:8f:d4: 7c:42:8c:3d:e0:4d:26:66:d6:c8:fa:4a:73:57:11: 4d:26:37:c5:0f:bc:32:28:4f:22:12:31:cb:43:31: 91:71:92:67:5b:9a:ef:cf:fa:08:45:98:f2:fb:50: 75:78:31:5c:b1:a0:f4:ec:13:2b:47:6b:fe:c4:0d: 65:e3:12:56:25:8f:d6:4a:76:0b:b5:72:20:b0:89: 75:82:df:43:d0:18:2d:c6:58:8e:a6:9f:41:89:46: e9:9f:95:e7:df:7c:71:a8:f2:7a:cc:75:25:13:3d: a5:85:59:34:42:8e:dd:2a:c7:66:9c:fe:2d:db:f1: 37:28:81:70:be:24:bd:c1:f5:ad:d8:63:1a:00:7b: a9:5a:27:d2:1e:50:dc:db:54:6d:ab:c0:8f:75:7e: a4:da:ce:63:d7:4b:2d:e0:33:bb:0c:4c:7e:5f:aa: d8:1f:b7:35:db:04:b9:06:99:e8:24:fb:24:cb:e4: 65:06:62:66:93:9b:b3:09:8a:3a:08:fe:ff:ae:49: 0d:0d:44:c0:61:c5:c4:ee:1c:34:5a:be:47:0e:24: 35:0b Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 2C:69:FF:80:C9:87:90:AE:34:E1:B4:E7:4C:93:85:99:40:E9:A7:B2 X509v3 Subject Key Identifier: 76:AB:0B:F8:D9:9D:B3:AE:E5:00:67:3C:9B:91:5B:60:34:59:D1:45 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.1.5.1 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crl Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:www.astro.com, DNS:astro.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Jun 5 23:51:07.291 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:12:EF:A1:E9:20:DD:A7:24:CD:CD:0B:03: 9D:03:DF:64:CA:9F:74:88:0B:FF:C2:C5:26:49:91:A6: 83:99:6A:56:02:20:2D:4F:32:B2:3E:5D:BC:00:0B:76: 04:CE:6F:8D:4F:F3:B6:35:9D:F7:E1:12:FB:49:0F:EB: 97:60:E2:E4:2A:CB Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70: 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB Timestamp : Jun 5 23:51:07.377 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:88:DB:7B:A1:23:6F:E7:9A:67:90:4A: 9D:5A:73:7F:96:EA:54:3A:36:4B:5B:54:19:34:A5:12: D2:59:8E:F6:B5:02:21:00:97:2A:E4:21:30:8E:AA:84: C3:8E:FB:8A:BC:DD:15:66:7B:C2:54:85:51:5D:D4:FB: 79:D7:D9:9C:42:90:A2:58 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2: 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B Timestamp : Jun 5 23:51:07.331 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:71:9F:7E:8D:84:A0:8C:40:C0:5B:79:44: 13:BA:B4:F6:E3:06:87:10:22:F5:8B:9B:E2:8A:E5:6F: 7A:DD:29:02:02:20:54:7B:CC:1B:93:66:70:85:66:C8: 24:14:BE:05:5E:05:B6:94:D6:FD:BF:3A:40:FA:68:45: 35:22:E8:70:92:8A Signature Algorithm: sha256WithRSAEncryption Signature Value: 22:c4:68:0d:16:2f:00:3b:f5:95:1f:3b:63:ac:20:81:e9:39: 66:ef:f5:ee:92:5b:49:dc:ad:2b:9c:9c:31:f2:da:5f:ae:c8: 90:74:36:34:00:9a:80:87:14:19:e4:f7:d3:d4:3e:1f:2d:1f: 10:13:92:ce:40:12:a8:e0:91:88:06:ab:3b:b3:04:e2:e1:a2: 97:6d:6e:91:fe:69:4e:f3:4a:12:83:18:ba:9d:ee:d3:e5:97: 92:c8:94:38:bd:46:10:1b:a5:69:7b:b3:a8:b5:5f:39:07:20: fa:c7:25:cc:87:8e:73:4f:8f:36:dd:9f:43:30:fb:9a:16:4c: d5:87:1b:3a:a1:d0:1a:1c:bd:d7:11:07:26:50:f3:ba:4e:3c: 4d:5d:55:84:8a:55:ae:b4:c5:28:cd:ee:2e:ea:71:a9:a8:db: bf:7e:ae:f2:3f:31:a6:1e:db:46:3c:fb:7d:91:aa:df:8a:65: bc:98:d2:53:8a:48:ca:b0:89:9a:cc:cf:22:07:d3:82:85:2e: 07:95:0f:b1:cf:c0:fb:cf:8b:50:00:33:11:51:d9:4f:a3:4b: f9:ae:ef:f5:81:d7:58:0c:1c:c4:1d:94:bd:f3:8d:44:e1:ee: b2:26:a0:9f:35:93:af:53:de:8d:9f:88:75:26:66:ab:5a:c9: 4e:33:90:16
1419907891 | 2024-03-29T10:46:34.5855568443 / tcp
HTTP/1.1 403 Forbidden Date: Fri, 29 Mar 2024 10:46:34 GMT Server: Apache X-Powered-By: Phusion Passenger(R) 6.0.20 content-length: 0 Status: 403 Forbidden Content-Type: text/html; charset=UTF-8
Certificate: Data: Version: 3 (0x2) Serial Number: 12:35:71:38:ad:08:2f:e5:75:e1:d3:40:fe:27:3c:19 Signature Algorithm: sha256WithRSAEncryption Issuer: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Extended Validation Secure Server CA Validity Not Before: Jun 5 00:00:00 2023 GMT Not After : Jul 1 23:59:59 2024 GMT Subject: serialNumber=CHE-105.913.150/jurisdictionC=CH/businessCategory=Private Organization, C=CH, ST=Z\xC3\xBCrich, O=Astrodienst AG, CN=www.astro.com Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:de:9d:18:9a:61:33:12:b3:35:04:30:14:b8:c7: e3:6b:51:b6:3c:ce:f1:f7:ab:50:b7:a0:35:8c:6d: b9:07:9c:4c:d4:c4:74:de:86:64:fe:f2:c3:8f:d4: 7c:42:8c:3d:e0:4d:26:66:d6:c8:fa:4a:73:57:11: 4d:26:37:c5:0f:bc:32:28:4f:22:12:31:cb:43:31: 91:71:92:67:5b:9a:ef:cf:fa:08:45:98:f2:fb:50: 75:78:31:5c:b1:a0:f4:ec:13:2b:47:6b:fe:c4:0d: 65:e3:12:56:25:8f:d6:4a:76:0b:b5:72:20:b0:89: 75:82:df:43:d0:18:2d:c6:58:8e:a6:9f:41:89:46: e9:9f:95:e7:df:7c:71:a8:f2:7a:cc:75:25:13:3d: a5:85:59:34:42:8e:dd:2a:c7:66:9c:fe:2d:db:f1: 37:28:81:70:be:24:bd:c1:f5:ad:d8:63:1a:00:7b: a9:5a:27:d2:1e:50:dc:db:54:6d:ab:c0:8f:75:7e: a4:da:ce:63:d7:4b:2d:e0:33:bb:0c:4c:7e:5f:aa: d8:1f:b7:35:db:04:b9:06:99:e8:24:fb:24:cb:e4: 65:06:62:66:93:9b:b3:09:8a:3a:08:fe:ff:ae:49: 0d:0d:44:c0:61:c5:c4:ee:1c:34:5a:be:47:0e:24: 35:0b Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Authority Key Identifier: 2C:69:FF:80:C9:87:90:AE:34:E1:B4:E7:4C:93:85:99:40:E9:A7:B2 X509v3 Subject Key Identifier: 76:AB:0B:F8:D9:9D:B3:AE:E5:00:67:3C:9B:91:5B:60:34:59:D1:45 X509v3 Key Usage: critical Digital Signature, Key Encipherment X509v3 Basic Constraints: critical CA:FALSE X509v3 Extended Key Usage: TLS Web Server Authentication, TLS Web Client Authentication X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.6449.1.2.1.5.1 CPS: https://sectigo.com/CPS Policy: 2.23.140.1.1 X509v3 CRL Distribution Points: Full Name: URI:http://crl.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crl Authority Information Access: CA Issuers - URI:http://crt.sectigo.com/SectigoRSAExtendedValidationSecureServerCA.crt OCSP - URI:http://ocsp.sectigo.com X509v3 Subject Alternative Name: DNS:www.astro.com, DNS:astro.com CT Precertificate SCTs: Signed Certificate Timestamp: Version : v1 (0x0) Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34: B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74 Timestamp : Jun 5 23:51:07.291 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:12:EF:A1:E9:20:DD:A7:24:CD:CD:0B:03: 9D:03:DF:64:CA:9F:74:88:0B:FF:C2:C5:26:49:91:A6: 83:99:6A:56:02:20:2D:4F:32:B2:3E:5D:BC:00:0B:76: 04:CE:6F:8D:4F:F3:B6:35:9D:F7:E1:12:FB:49:0F:EB: 97:60:E2:E4:2A:CB Signed Certificate Timestamp: Version : v1 (0x0) Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70: 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB Timestamp : Jun 5 23:51:07.377 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:46:02:21:00:88:DB:7B:A1:23:6F:E7:9A:67:90:4A: 9D:5A:73:7F:96:EA:54:3A:36:4B:5B:54:19:34:A5:12: D2:59:8E:F6:B5:02:21:00:97:2A:E4:21:30:8E:AA:84: C3:8E:FB:8A:BC:DD:15:66:7B:C2:54:85:51:5D:D4:FB: 79:D7:D9:9C:42:90:A2:58 Signed Certificate Timestamp: Version : v1 (0x0) Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2: 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B Timestamp : Jun 5 23:51:07.331 2023 GMT Extensions: none Signature : ecdsa-with-SHA256 30:44:02:20:71:9F:7E:8D:84:A0:8C:40:C0:5B:79:44: 13:BA:B4:F6:E3:06:87:10:22:F5:8B:9B:E2:8A:E5:6F: 7A:DD:29:02:02:20:54:7B:CC:1B:93:66:70:85:66:C8: 24:14:BE:05:5E:05:B6:94:D6:FD:BF:3A:40:FA:68:45: 35:22:E8:70:92:8A Signature Algorithm: sha256WithRSAEncryption Signature Value: 22:c4:68:0d:16:2f:00:3b:f5:95:1f:3b:63:ac:20:81:e9:39: 66:ef:f5:ee:92:5b:49:dc:ad:2b:9c:9c:31:f2:da:5f:ae:c8: 90:74:36:34:00:9a:80:87:14:19:e4:f7:d3:d4:3e:1f:2d:1f: 10:13:92:ce:40:12:a8:e0:91:88:06:ab:3b:b3:04:e2:e1:a2: 97:6d:6e:91:fe:69:4e:f3:4a:12:83:18:ba:9d:ee:d3:e5:97: 92:c8:94:38:bd:46:10:1b:a5:69:7b:b3:a8:b5:5f:39:07:20: fa:c7:25:cc:87:8e:73:4f:8f:36:dd:9f:43:30:fb:9a:16:4c: d5:87:1b:3a:a1:d0:1a:1c:bd:d7:11:07:26:50:f3:ba:4e:3c: 4d:5d:55:84:8a:55:ae:b4:c5:28:cd:ee:2e:ea:71:a9:a8:db: bf:7e:ae:f2:3f:31:a6:1e:db:46:3c:fb:7d:91:aa:df:8a:65: bc:98:d2:53:8a:48:ca:b0:89:9a:cc:cf:22:07:d3:82:85:2e: 07:95:0f:b1:cf:c0:fb:cf:8b:50:00:33:11:51:d9:4f:a3:4b: f9:ae:ef:f5:81:d7:58:0c:1c:c4:1d:94:bd:f3:8d:44:e1:ee: b2:26:a0:9f:35:93:af:53:de:8d:9f:88:75:26:66:ab:5a:c9: 4e:33:90:16