Skip to content

Commit

Permalink
Browse files Browse the repository at this point in the history
  • Loading branch information
SocialGroovyBot committed Sep 28, 2022
1 parent 6d27b71 commit 9900059
Show file tree
Hide file tree
Showing 17 changed files with 3,685 additions and 3,662 deletions.
3,849 changes: 1,953 additions & 1,896 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/404.json

Large diffs are not rendered by default.

22 changes: 22 additions & 0 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/ecoindex.json
Original file line number Diff line number Diff line change
@@ -0,0 +1,22 @@
[
{
"label": "EcoIndex",
"value": 69
},
{
"label": "Note",
"value": "B"
},
{
"label": "GES",
"value": 1.62,
"unit": "gCO2e",
"comment": "Pour un total de 2000 visites par mois, ceci correspond à 36km en voiture (Peugeot 208 5P 1.6 BlueHDi FAP (75ch) BVM5)"
},
{
"label": "Eau",
"value": 2.43,
"unit": "cl",
"comment": "Pour un total de 2000 visites par mois, ceci correspond à 1 douche"
}
]
1 change: 1 addition & 0 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/http.json
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
{"url":"https://beta.gouv.fr","algorithm_version":2,"end_time":"Wed, 28 Sep 2022 12:27:00 GMT","grade":"D+","hidden":false,"likelihood_indicator":"MEDIUM","response_headers":{"Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html","Date":"Wed, 28 Sep 2022 12:26:59 GMT","ETag":"W/\"63343542-9246\"","Last-Modified":"Wed, 28 Sep 2022 11:51:30 GMT","Strict-Transport-Security":"max-age=31536000","Transfer-Encoding":"chunked","X-Request-ID":"c64120f4-0b28-4799-b45f-4b1e3d0281de"},"scan_id":29730052,"score":40,"start_time":"Wed, 28 Sep 2022 12:26:56 GMT","state":"FINISHED","status_code":200,"tests_failed":4,"tests_passed":8,"tests_quantity":12,"details":{"content-security-policy":{"expectation":"csp-implemented-with-no-unsafe","name":"content-security-policy","output":{"data":null,"http":false,"meta":false,"policy":null},"pass":false,"result":"csp-not-implemented","score_description":"Content Security Policy (CSP) header not implemented","score_modifier":-25},"contribute":{"expectation":"contribute-json-only-required-on-mozilla-properties","name":"contribute","output":{"data":null},"pass":true,"result":"contribute-json-only-required-on-mozilla-properties","score_description":"Contribute.json isn't required on websites that don't belong to Mozilla","score_modifier":0},"cookies":{"expectation":"cookies-secure-with-httponly-sessions","name":"cookies","output":{"data":null,"sameSite":null},"pass":true,"result":"cookies-not-found","score_description":"No cookies detected","score_modifier":0},"cross-origin-resource-sharing":{"expectation":"cross-origin-resource-sharing-not-implemented","name":"cross-origin-resource-sharing","output":{"data":{"acao":null,"clientaccesspolicy":null,"crossdomain":null}},"pass":true,"result":"cross-origin-resource-sharing-not-implemented","score_description":"Content is not visible via cross-origin resource sharing (CORS) files or headers","score_modifier":0},"public-key-pinning":{"expectation":"hpkp-not-implemented","name":"public-key-pinning","output":{"data":null,"includeSubDomains":false,"max-age":null,"numPins":null,"preloaded":false},"pass":true,"result":"hpkp-not-implemented","score_description":"HTTP Public Key Pinning (HPKP) header not implemented","score_modifier":0},"redirection":{"expectation":"redirection-to-https","name":"redirection","output":{"destination":"https://beta.gouv.fr/","redirects":true,"route":["http://beta.gouv.fr/","https://beta.gouv.fr/"],"status_code":200},"pass":true,"result":"redirection-to-https","score_description":"Initial redirection is to HTTPS on same host, final destination is HTTPS","score_modifier":0},"referrer-policy":{"expectation":"referrer-policy-private","name":"referrer-policy","output":{"data":null,"http":false,"meta":false},"pass":true,"result":"referrer-policy-not-implemented","score_description":"Referrer-Policy header not implemented","score_modifier":0},"strict-transport-security":{"expectation":"hsts-implemented-max-age-at-least-six-months","name":"strict-transport-security","output":{"data":"max-age=31536000","includeSubDomains":false,"max-age":31536000,"preload":false,"preloaded":false},"pass":true,"result":"hsts-implemented-max-age-at-least-six-months","score_description":"HTTP Strict Transport Security (HSTS) header set to a minimum of six months (15768000)","score_modifier":0},"subresource-integrity":{"expectation":"sri-implemented-and-external-scripts-loaded-securely","name":"subresource-integrity","output":{"data":{}},"pass":true,"result":"sri-not-implemented-but-all-scripts-loaded-from-secure-origin","score_description":"Subresource Integrity (SRI) not implemented, but all scripts are loaded from a similar origin","score_modifier":0},"x-content-type-options":{"expectation":"x-content-type-options-nosniff","name":"x-content-type-options","output":{"data":null},"pass":false,"result":"x-content-type-options-not-implemented","score_description":"X-Content-Type-Options header not implemented","score_modifier":-5},"x-frame-options":{"expectation":"x-frame-options-sameorigin-or-deny","name":"x-frame-options","output":{"data":null},"pass":false,"result":"x-frame-options-not-implemented","score_description":"X-Frame-Options (XFO) header not implemented","score_modifier":-20},"x-xss-protection":{"expectation":"x-xss-protection-1-mode-block","name":"x-xss-protection","output":{"data":null},"pass":false,"result":"x-xss-protection-not-implemented","score_description":"X-XSS-Protection header not implemented","score_modifier":-10}}}

Large diffs are not rendered by default.

1,855 changes: 923 additions & 932 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/lhr.json

Large diffs are not rendered by default.

8 changes: 4 additions & 4 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/nmapvuln.gnmap
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
# Nmap 7.92 scan initiated Sun Sep 25 01:36:51 2022 as: nmap -sV --script vulners --script-args mincvss=5.0 -oA /data/nmapvuln beta.gouv.fr
Host: 109.232.236.90 (ows-109-232-236-90.eu-west-2.compute.outscale.com) Status: Up
Host: 109.232.236.90 (ows-109-232-236-90.eu-west-2.compute.outscale.com) Ports: 80/open/tcp//http///, 443/open/tcp//ssl|https/// Ignored State: filtered (998)
# Nmap done at Sun Sep 25 01:37:32 2022 -- 1 IP address (1 host up) scanned in 41.83 seconds
# Nmap 7.92 scan initiated Wed Sep 28 12:30:53 2022 as: nmap -sV --script vulners --script-args mincvss=5.0 -oA /data/nmapvuln beta.gouv.fr
Host: 5.104.101.30 (ows-5-104-101-30.eu-west-2.compute.outscale.com) Status: Up
Host: 5.104.101.30 (ows-5-104-101-30.eu-west-2.compute.outscale.com) Ports: 80/open/tcp//http///, 443/open/tcp//ssl|https/// Ignored State: filtered (998)
# Nmap done at Wed Sep 28 12:31:29 2022 -- 1 IP address (1 host up) scanned in 36.38 seconds
28 changes: 10 additions & 18 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/nmapvuln.html
Original file line number Diff line number Diff line change
Expand Up @@ -54,7 +54,7 @@
<h1>Scan Report<br><small>Nmap 7.92</small>
</h1>
<pre style="white-space:pre-wrap; word-wrap:break-word;">nmap -sV --script vulners --script-args mincvss=5.0 -oA /data/nmapvuln beta.gouv.fr</pre>
<p class="lead">Sun Sep 25 01:36:51 2022 – Sun Sep 25 01:37:32 2022<br>1 hosts scanned.
<p class="lead">Wed Sep 28 12:30:53 2022 – Wed Sep 28 12:31:29 2022<br>1 hosts scanned.
1 hosts up.
0 hosts down.
</p>
Expand All @@ -76,7 +76,7 @@ <h2 id="scannedhosts" class="target">Scanned Hosts</h2>
</tr></thead>
<tbody><tr>
<td><span class="label label-success">up</span></td>
<td>109.232.236.90</td>
<td>5.104.101.30</td>
<td>beta.gouv.fr</td>
<td>2</td>
<td>0</td>
Expand All @@ -91,12 +91,12 @@ <h2 id="scannedhosts" class="target">Scanned Hosts</h2>
});
</script><h2 id="onlinehosts" class="target">Online Hosts</h2>
<div class="panel panel-default">
<div class="panel-heading clickable" data-toggle="collapse" data-target="#109-232-236-90"><h3 class="panel-title">109.232.236.90 - beta.gouv.fr</h3></div>
<div class="panel-body collapse in" id="109-232-236-90">
<div class="panel-heading clickable" data-toggle="collapse" data-target="#5-104-101-30"><h3 class="panel-title">5.104.101.30 - beta.gouv.fr</h3></div>
<div class="panel-body collapse in" id="5-104-101-30">
<h4>Hostnames</h4>
<ul>
<li>beta.gouv.fr (user)</li>
<li>ows-109-232-236-90.eu-west-2.compute.outscale.com (PTR)</li>
<li>ows-5-104-101-30.eu-west-2.compute.outscale.com (PTR)</li>
</ul>
<h4>Ports</h4>
<div class="table-responsive"><table class="table table-bordered">
Expand Down Expand Up @@ -124,7 +124,7 @@ <h4>Ports</h4>
<pre style="white-space:pre-wrap; word-wrap:break-word;">
GetRequest, HTTPOptions:
HTTP/1.1 404 Not Found
Date: Sun, 25 Sep 2022 01:37:06 GMT
Date: Wed, 28 Sep 2022 12:31:07 GMT
Content-Type: text/html
Content-Length: 15436
Connection: close
Expand All @@ -143,17 +143,9 @@ <h4>Ports</h4>
<tr><td colspan="7">
<a href="https://nvd.nist.gov/vuln/search/results?form_type=Advanced&amp;cves=on&amp;cpe_version="></a><h5>fingerprint-strings</h5>
<pre style="white-space:pre-wrap; word-wrap:break-word;">
GetRequest:
HTTP/1.1 404 Not Found
Date: Sun, 25 Sep 2022 01:37:12 GMT
Content-Type: text/html
Content-Length: 15436
Connection: close
Content-Encoding: identity
&lt;!DOCTYPE html&gt;&lt;html&gt;&lt;head&gt;&lt;meta http-equiv="content-type" content="text/html; charset=UTF-8"&gt;&lt;meta charset="utf-8"&gt;&lt;meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"&gt;&lt;meta content="width=device-width, initial-scale=1.0" name="viewport"&gt;&lt;title&gt;Application doesn't exist - Scalingo&lt;/title&gt;&lt;style&gt;html { height: 100%;}body { -webkit-transform-style: preserve-3d; transform-style: preserve-3d; text-align: center; height: 100%; margin: 0; padding: 0; background: -webkit-gradient(linear, left top, left bottom, from(#1864ab), to(#099ec9)) left top/100% 100% no-repeat #1864ab; background: linear-gradient(to bottom, #1864ab, #099ec9) left top/100% 100% no-repeat #1864ab; color: white;}#wrapper { position: relative; top: 40%; -webkit
HTTPOptions:
GetRequest, HTTPOptions:
HTTP/1.1 404 Not Found
Date: Sun, 25 Sep 2022 01:37:13 GMT
Date: Wed, 28 Sep 2022 12:31:13 GMT
Content-Type: text/html
Content-Length: 15436
Connection: close
Expand All @@ -178,7 +170,7 @@ <h2 id="openservices" class="target">Open Services</h2>
</tr></thead>
<tbody>
<tr>
<td>109.232.236.90 - beta.gouv.fr</td>
<td>5.104.101.30 - beta.gouv.fr</td>
<td>80</td>
<td>tcp</td>
<td>http</td>
Expand All @@ -188,7 +180,7 @@ <h2 id="openservices" class="target">Open Services</h2>
<td></td>
</tr>
<tr>
<td>109.232.236.90 - beta.gouv.fr</td>
<td>5.104.101.30 - beta.gouv.fr</td>
<td>443</td>
<td>tcp</td>
<td>https</td>
Expand Down
48 changes: 20 additions & 28 deletions results/aHR0cHM6Ly9iZXRhLmdvdXYuZnI=/nmapvuln.nmap
Original file line number Diff line number Diff line change
@@ -1,43 +1,35 @@
# Nmap 7.92 scan initiated Sun Sep 25 01:36:51 2022 as: nmap -sV --script vulners --script-args mincvss=5.0 -oA /data/nmapvuln beta.gouv.fr
Nmap scan report for beta.gouv.fr (109.232.236.90)
Host is up (0.11s latency).
Other addresses for beta.gouv.fr (not scanned): 5.104.101.30
rDNS record for 109.232.236.90: ows-109-232-236-90.eu-west-2.compute.outscale.com
# Nmap 7.92 scan initiated Wed Sep 28 12:30:53 2022 as: nmap -sV --script vulners --script-args mincvss=5.0 -oA /data/nmapvuln beta.gouv.fr
Nmap scan report for beta.gouv.fr (5.104.101.30)
Host is up (0.081s latency).
Other addresses for beta.gouv.fr (not scanned): 109.232.236.90
rDNS record for 5.104.101.30: ows-5-104-101-30.eu-west-2.compute.outscale.com
Not shown: 998 filtered tcp ports (no-response)
PORT STATE SERVICE VERSION
80/tcp open http
| fingerprint-strings:
| GetRequest, HTTPOptions:
| HTTP/1.1 404 Not Found
| Date: Sun, 25 Sep 2022 01:37:06 GMT
| Date: Wed, 28 Sep 2022 12:31:07 GMT
| Content-Type: text/html
| Content-Length: 15436
| Connection: close
| Content-Encoding: identity
|_ <!DOCTYPE html><html><head><meta http-equiv="content-type" content="text/html; charset=UTF-8"><meta charset="utf-8"><meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"><meta content="width=device-width, initial-scale=1.0" name="viewport"><title>Application doesn't exist - Scalingo</title><style>html { height: 100%;}body { -webkit-transform-style: preserve-3d; transform-style: preserve-3d; text-align: center; height: 100%; margin: 0; padding: 0; background: -webkit-gradient(linear, left top, left bottom, from(#1864ab), to(#099ec9)) left top/100% 100% no-repeat #1864ab; background: linear-gradient(to bottom, #1864ab, #099ec9) left top/100% 100% no-repeat #1864ab; color: white;}#wrapper { position: relative; top: 40%; -webkit
443/tcp open ssl/https
| fingerprint-strings:
| GetRequest:
| HTTP/1.1 404 Not Found
| Date: Sun, 25 Sep 2022 01:37:12 GMT
| Content-Type: text/html
| Content-Length: 15436
| Connection: close
| Content-Encoding: identity
| <!DOCTYPE html><html><head><meta http-equiv="content-type" content="text/html; charset=UTF-8"><meta charset="utf-8"><meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"><meta content="width=device-width, initial-scale=1.0" name="viewport"><title>Application doesn't exist - Scalingo</title><style>html { height: 100%;}body { -webkit-transform-style: preserve-3d; transform-style: preserve-3d; text-align: center; height: 100%; margin: 0; padding: 0; background: -webkit-gradient(linear, left top, left bottom, from(#1864ab), to(#099ec9)) left top/100% 100% no-repeat #1864ab; background: linear-gradient(to bottom, #1864ab, #099ec9) left top/100% 100% no-repeat #1864ab; color: white;}#wrapper { position: relative; top: 40%; -webkit
| HTTPOptions:
| GetRequest, HTTPOptions:
| HTTP/1.1 404 Not Found
| Date: Sun, 25 Sep 2022 01:37:13 GMT
| Date: Wed, 28 Sep 2022 12:31:13 GMT
| Content-Type: text/html
| Content-Length: 15436
| Connection: close
| Content-Encoding: identity
|_ <!DOCTYPE html><html><head><meta http-equiv="content-type" content="text/html; charset=UTF-8"><meta charset="utf-8"><meta content="IE=edge,chrome=1" http-equiv="X-UA-Compatible"><meta content="width=device-width, initial-scale=1.0" name="viewport"><title>Application doesn't exist - Scalingo</title><style>html { height: 100%;}body { -webkit-transform-style: preserve-3d; transform-style: preserve-3d; text-align: center; height: 100%; margin: 0; padding: 0; background: -webkit-gradient(linear, left top, left bottom, from(#1864ab), to(#099ec9)) left top/100% 100% no-repeat #1864ab; background: linear-gradient(to bottom, #1864ab, #099ec9) left top/100% 100% no-repeat #1864ab; color: white;}#wrapper { position: relative; top: 40%; -webkit
2 services unrecognized despite returning data. If you know the service/version, please submit the following fingerprints at https://nmap.org/cgi-bin/submit.cgi?new-service :
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port80-TCP:V=7.92%I=7%D=9/25%Time=632FB0C2%P=x86_64-alpine-linux-musl%r
SF:(GetRequest,3CEA,"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20Sun,\x20
SF:25\x20Sep\x202022\x2001:37:06\x20GMT\r\nContent-Type:\x20text/html\r\nC
SF-Port80-TCP:V=7.92%I=7%D=9/28%Time=63343E8B%P=x86_64-alpine-linux-musl%r
SF:(GetRequest,3CEA,"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20Wed,\x20
SF:28\x20Sep\x202022\x2012:31:07\x20GMT\r\nContent-Type:\x20text/html\r\nC
SF:ontent-Length:\x2015436\r\nConnection:\x20close\r\nContent-Encoding:\x2
SF:0identity\r\n\r\n<!DOCTYPE\x20html><html><head><meta\x20http-equiv=\"co
SF:ntent-type\"\x20content=\"text/html;\x20charset=UTF-8\"><meta\x20charse
Expand All @@ -52,9 +44,9 @@ SF:,\x20left\x20bottom,\x20from\(#1864ab\),\x20to\(#099ec9\)\)\x20left\x20
SF:top/100%\x20100%\x20no-repeat\x20#1864ab;\x20background:\x20linear-grad
SF:ient\(to\x20bottom,\x20#1864ab,\x20#099ec9\)\x20left\x20top/100%\x20100
SF:%\x20no-repeat\x20#1864ab;\x20color:\x20white;}#wrapper\x20{\x20positio
SF:n:\x20relative;\x20top:\x2040%;\x20-webkit")%r(HTTPOptions,3298,"HTTP/1
SF:\.1\x20404\x20Not\x20Found\r\nDate:\x20Sun,\x2025\x20Sep\x202022\x2001:
SF:37:06\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x2015436\
SF:n:\x20relative;\x20top:\x2040%;\x20-webkit")%r(HTTPOptions,3CEA,"HTTP/1
SF:\.1\x20404\x20Not\x20Found\r\nDate:\x20Wed,\x2028\x20Sep\x202022\x2012:
SF:31:07\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x2015436\
SF:r\nConnection:\x20close\r\nContent-Encoding:\x20identity\r\n\r\n<!DOCTY
SF:PE\x20html><html><head><meta\x20http-equiv=\"content-type\"\x20content=
SF:\"text/html;\x20charset=UTF-8\"><meta\x20charset=\"utf-8\"><meta\x20con
Expand All @@ -71,9 +63,9 @@ SF:1864ab,\x20#099ec9\)\x20left\x20top/100%\x20100%\x20no-repeat\x20#1864a
SF:b;\x20color:\x20white;}#wrapper\x20{\x20position:\x20relative;\x20top:\
SF:x2040%;\x20-webkit");
==============NEXT SERVICE FINGERPRINT (SUBMIT INDIVIDUALLY)==============
SF-Port443-TCP:V=7.92%T=SSL%I=7%D=9/25%Time=632FB0C9%P=x86_64-alpine-linux
SF:-musl%r(GetRequest,3CEA,"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20S
SF:un,\x2025\x20Sep\x202022\x2001:37:12\x20GMT\r\nContent-Type:\x20text/ht
SF-Port443-TCP:V=7.92%T=SSL%I=7%D=9/28%Time=63343E91%P=x86_64-alpine-linux
SF:-musl%r(GetRequest,3CEA,"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20W
SF:ed,\x2028\x20Sep\x202022\x2012:31:13\x20GMT\r\nContent-Type:\x20text/ht
SF:ml\r\nContent-Length:\x2015436\r\nConnection:\x20close\r\nContent-Encod
SF:ing:\x20identity\r\n\r\n<!DOCTYPE\x20html><html><head><meta\x20http-equ
SF:iv=\"content-type\"\x20content=\"text/html;\x20charset=UTF-8\"><meta\x2
Expand All @@ -89,8 +81,8 @@ SF:eft\x20top/100%\x20100%\x20no-repeat\x20#1864ab;\x20background:\x20line
SF:ar-gradient\(to\x20bottom,\x20#1864ab,\x20#099ec9\)\x20left\x20top/100%
SF:\x20100%\x20no-repeat\x20#1864ab;\x20color:\x20white;}#wrapper\x20{\x20
SF:position:\x20relative;\x20top:\x2040%;\x20-webkit")%r(HTTPOptions,3CEA,
SF:"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20Sun,\x2025\x20Sep\x202022
SF:\x2001:37:13\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x2
SF:"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20Wed,\x2028\x20Sep\x202022
SF:\x2012:31:13\x20GMT\r\nContent-Type:\x20text/html\r\nContent-Length:\x2
SF:015436\r\nConnection:\x20close\r\nContent-Encoding:\x20identity\r\n\r\n
SF:<!DOCTYPE\x20html><html><head><meta\x20http-equiv=\"content-type\"\x20c
SF:ontent=\"text/html;\x20charset=UTF-8\"><meta\x20charset=\"utf-8\"><meta
Expand All @@ -108,4 +100,4 @@ SF:0#1864ab;\x20color:\x20white;}#wrapper\x20{\x20position:\x20relative;\x
SF:20top:\x2040%;\x20-webkit");

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
# Nmap done at Sun Sep 25 01:37:32 2022 -- 1 IP address (1 host up) scanned in 41.83 seconds
# Nmap done at Wed Sep 28 12:31:29 2022 -- 1 IP address (1 host up) scanned in 36.38 seconds
Loading

0 comments on commit 9900059

Please sign in to comment.