195.133.88.155

Regular View Raw Data
Last Seen: 2024-04-23

GeneralInformation

Hostnames 900dat9.ip-ptr.tech
roastrootsrendezvous.com
Domains ip-ptr.tech roastrootsrendezvous.com 
Country Germany
City Frankfurt am Main
Organization GLOBAL INTERNET SOLUTIONS LLC
ISP GLOBAL INTERNET SOLUTIONS LLC
ASN AS207713

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2023-51766 Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not.
CVE-2023-44487 The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2022-37452 Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.
CVE-2022-37451 Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
CVE-2021-38371 5.0The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending.
CVE-2021-3618 5.8ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certificates, such as multi-domain or wildcard certificates. A MiTM attacker having access to victim's traffic at the TCP/IP layer can redirect traffic from one subdomain to another, resulting in a valid TLS session. This breaks the authentication of TLS and cross-protocol attacks may be possible where the behavior of one protocol service may compromise the other at the application layer.
CVE-2021-23017 6.8A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.

OpenPorts

-1075854322 | 2024-04-16T13:35:28.713116
  
21 / tcp
820329592 | 2024-04-20T20:07:29.727072
  
53 / udp
-570141518 | 2024-04-23T10:17:50.989424
  
80 / tcp
1087360504 | 2024-04-22T01:49:06.186912
  
443 / tcp
-348661255 | 2024-04-21T00:18:13.535754
  
587 / tcp



Contact Us

Shodan ® - All rights reserved