78.24.221.104

Regular View Raw Data
Last Seen: 2024-04-18

GeneralInformation

Hostnames abb-bank.ru
www.abb-bank.ru
ctgrupp.ru
Domains abb-bank.ru ctgrupp.ru 
Country Russian Federation
City Moscow
Organization JSC IOT
ISP JSC IOT
ASN AS29182

WebTechnologies

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2023-51766 5.3Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because Exim supports <LF>.<CR><LF> but some other popular e-mail servers do not.
CVE-2023-44487 The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
CVE-2022-37452 9.8Exim before 4.95 has a heap-based buffer overflow for the alias list in host_name_lookup in host.c when sender_host_name is set.
CVE-2022-37451 7.5Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
CVE-2021-38371 7.5The STARTTLS feature in Exim through 4.94.2 allows response injection (buffering) during MTA SMTP sending.
CVE-2021-3618 5.8ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certificates, such as multi-domain or wildcard certificates. A MiTM attacker having access to victim's traffic at the TCP/IP layer can redirect traffic from one subdomain to another, resulting in a valid TLS session. This breaks the authentication of TLS and cross-protocol attacks may be possible where the behavior of one protocol service may compromise the other at the application layer.
CVE-2021-23017 6.8A security issue in nginx resolver was identified, which might allow an attacker who is able to forge UDP packets from the DNS server to cause 1-byte memory overwrite, resulting in worker process crash or potential other impact.
196534003 | 2024-04-10T07:56:28.291830
  
21 / tcp
2131175719 | 2024-04-13T21:36:12.220741
  
22 / tcp
-2011428106 | 2024-04-17T12:29:19.079780
  
25 / tcp
1801969066 | 2024-03-20T20:12:16.460728
  
53 / udp
-188029461 | 2024-04-18T00:05:51.508080
  
80 / tcp
-1083873233 | 2024-04-18T01:57:37.122019
  
110 / tcp
747702150 | 2024-03-27T03:05:15.835876
  
123 / udp
175038010 | 2024-04-14T06:06:12.722723
  
143 / tcp
1388901803 | 2024-04-10T21:12:11.823710
  
443 / tcp
-567788439 | 2024-04-14T18:52:20.372321
  
465 / tcp
-242215657 | 2024-03-26T15:33:59.076783
  
587 / tcp
1117004044 | 2024-03-20T04:18:44.877309
  
993 / tcp
-1076830913 | 2024-04-08T03:37:23.082192
  
995 / tcp



Contact Us

Shodan ® - All rights reserved