Outdated Servers
Outdated Servers
94SVN scan initiated Sun Feb 9 09:29:13 2025 as: nmap -sV --script vuln -
oN outdated_servers.txt 111.68.99.3
Nmap scan report for 111.68.99.3.bahria.edu.pk (111.68.99.3)
Host is up (0.036s latency).
Not shown: 995 filtered tcp ports (no-response), 1 filtered tcp ports (host-
unreach)
PORT STATE SERVICE VERSION
22/tcp open ssh Linksys WRT45G modified dropbear sshd (protocol 2.0)
443/tcp open ssl/http Microsoft HTTPAPI httpd 2.0 (SSDP/UPnP)
|_http-csrf: Couldn't find any CSRF vulnerabilities.
|_http-stored-xss: Couldn't find any stored XSS vulnerabilities.
|_http-dombased-xss: Couldn't find any DOM based XSS.
|_http-server-header: Microsoft-HTTPAPI/2.0
1723/tcp open pptp linux (Firmware: 1)
4443/tcp open ssl/pharos?
| fingerprint-strings:
| FourOhFourRequest:
| HTTP/1.1 404 Not Found
| Date: Sun, 09 Feb 2025 17:27:03 GMT
| Server: xxxx
| X-Frame-Options: SAMEORIGIN
| Strict-Transport-Security: max-age=31536000
| X-Content-Type-Options: nosniff
| Accept-Ranges: bytes
| Connection: close
| Content-Length: 111
| Content-Type: text/html
| <!DOCTYPE html>
| <html>
| <body>
| <h3>Error:404 Page not found</h3>
| <h4>Check the entered URL.</h4>
| </body>
| <html>
| GetRequest:
| HTTP/1.1 200 OK
| Date: Sun, 09 Feb 2025 17:27:03 GMT
| Server: xxxx
| X-Frame-Options: SAMEORIGIN
| Strict-Transport-Security: max-age=31536000
| X-Content-Type-Options: nosniff
| Last-Modified: Wed, 01 Nov 2023 05:16:41 GMT
| ETag: "c48-60910605b8040"
| Accept-Ranges: bytes
| Content-Length: 3144
| Cache-Control: max-age=2592000
| Expires: Tue, 11 Mar 2025 17:27:03 GMT
| Connection: close
| Content-Type: text/html
| <!DOCTYPE HTML>
| <html lang="en">
| <head>
| <title>VPN Portal</title>
| <meta http-equiv="X-UA-Compatible" content="IE=edge" />
| <meta http-equiv='cache-control' content='max-age=0, no-cache, no-store,
must-revalidate' />
| <meta http-equiv='expires' content='0' />
| <meta http-equiv='pragma' content='no-cache' />
| <link href="/themes/lite1/css/typography.css?version=202311010710"
rel="stylesheet" type="text/css" />
| <link rel="stylesheet" href="/themes/lite1/css/loginstylesheet.css?version
| HTTPOptions:
| HTTP/1.1 403 Forbidden
| Date: Sun, 09 Feb 2025 17:27:03 GMT
| Server: xxxx
| X-Frame-Options: SAMEORIGIN
| Strict-Transport-Security: max-age=31536000
| X-Content-Type-Options: nosniff
| Content-Length: 199
| Connection: close
| Content-Type: text/html; charset=iso-8859-1
| <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
| <html><head>
| <title>403 Forbidden</title>
| </head><body>
| <h1>Forbidden</h1>
| <p>You don't have permission to access this resource.</p>
|_ </body></html>
1 service unrecognized despite returning data. If you know the service/version,
please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-
service :
SF-Port4443-TCP:V=7.94SVN%T=SSL%I=7%D=2/9%Time=67A8BC04%P=x86_64-pc-linux-
SF:gnu%r(GetRequest,DE2,"HTTP/1\.1\x20200\x20OK\r\nDate:\x20Sun,\x2009\x20
SF:Feb\x202025\x2017:27:03\x20GMT\r\nServer:\x20xxxx\r\nX-Frame-Options:\x
SF:20SAMEORIGIN\r\nStrict-Transport-Security:\x20max-age=31536000\r\nX-Con
SF:tent-Type-Options:\x20nosniff\r\nLast-Modified:\x20Wed,\x2001\x20Nov\x2
SF:02023\x2005:16:41\x20GMT\r\nETag:\x20\"c48-60910605b8040\"\r\nAccept-Ra
SF:nges:\x20bytes\r\nContent-Length:\x203144\r\nCache-Control:\x20max-age=
SF:2592000\r\nExpires:\x20Tue,\x2011\x20Mar\x202025\x2017:27:03\x20GMT\r\n
SF:Connection:\x20close\r\nContent-Type:\x20text/html\r\n\r\n<!DOCTYPE\x20
SF:HTML>\n<html\x20lang=\"en\">\n\n<head>\n\t<title>VPN\x20Portal</title>\
SF:n\t<meta\x20http-equiv=\"X-UA-Compatible\"\x20content=\"IE=edge\"\x20/>
SF:\n\t<meta\x20http-equiv='cache-control'\x20content='max-age=0,\x20no-ca
SF:che,\x20no-store,\x20must-revalidate'\x20/>\n\t<meta\x20http-equiv='exp
SF:ires'\x20content='0'\x20/>\n\t<meta\x20http-equiv='pragma'\x20content='
SF:no-cache'\x20/>\n\t<link\x20href=\"/themes/lite1/css/typography\.css\?v
SF:ersion=202311010710\"\x20rel=\"stylesheet\"\x20type=\"text/css\"\x20/>\
SF:n\t<link\x20rel=\"stylesheet\"\x20href=\"/themes/lite1/css/loginstylesh
SF:eet\.css\?version")%r(HTTPOptions,1D4,"HTTP/1\.1\x20403\x20Forbidden\r\
SF:nDate:\x20Sun,\x2009\x20Feb\x202025\x2017:27:03\x20GMT\r\nServer:\x20xx
SF:xx\r\nX-Frame-Options:\x20SAMEORIGIN\r\nStrict-Transport-Security:\x20m
SF:ax-age=31536000\r\nX-Content-Type-Options:\x20nosniff\r\nContent-Length
SF::\x20199\r\nConnection:\x20close\r\nContent-Type:\x20text/html;\x20char
SF:set=iso-8859-1\r\n\r\n<!DOCTYPE\x20HTML\x20PUBLIC\x20\"-//IETF//DTD\x20
SF:HTML\x202\.0//EN\">\n<html><head>\n<title>403\x20Forbidden</title>\n</h
SF:ead><body>\n<h1>Forbidden</h1>\n<p>You\x20don't\x20have\x20permission\x
SF:20to\x20access\x20this\x20resource\.</p>\n</body></html>\n")%r(FourOhFo
SF:urRequest,17E,"HTTP/1\.1\x20404\x20Not\x20Found\r\nDate:\x20Sun,\x2009\
SF:x20Feb\x202025\x2017:27:03\x20GMT\r\nServer:\x20xxxx\r\nX-Frame-Options
SF::\x20SAMEORIGIN\r\nStrict-Transport-Security:\x20max-age=31536000\r\nX-
SF:Content-Type-Options:\x20nosniff\r\nAccept-Ranges:\x20bytes\r\nConnecti
SF:on:\x20close\r\nContent-Length:\x20111\r\nContent-Type:\x20text/html\r\
SF:n\r\n<!DOCTYPE\x20html>\n<html>\n<body>\n<h3>Error:404\x20Page\x20not\x
SF:20found</h3>\n<h4>Check\x20the\x20entered\x20URL\.</h4>\n</body>\n<html
SF:>\n");
Service Info: Host: local; OS: Windows; Device: router; CPE:
cpe:/o:microsoft:windows
Service detection performed. Please report any incorrect results at
https://nmap.org/submit/ .
# Nmap done at Sun Feb 9 09:37:39 2025 -- 1 IP address (1 host up) scanned in
506.63 seconds