- Nikto v2.1.6 --------------------------------------------------------------------------- + Target IP: 10.10.243.208 + Target Hostname: 10.10.243.208 + Target Port: 80 + Start Time: 2022-02-05 21:36:53 (GMT-5) --------------------------------------------------------------------------- + Server: Apache/2.4.18 (Ubuntu) + The anti-clickjacking X-Frame-Options header is not present. + The X-XSS-Protection header is not defined. This header can hint to the user agent to protect against some forms of XSS + The X-Content-Type-Options header is not set. This could allow the user agent to render the content of the site in a different fashion to the MIME type + No CGI Directories found (use '-C all' to force check all possible dirs) + Apache/2.4.18 appears to be outdated (current is at least Apache/2.4.37). Apache 2.2.34 is the EOL for the 2.x branch. + Server may leak inodes via ETags, header found with file /, inode: 426, size: 5818ccf125686, mtime: gzip + Cookie PHPSESSID created without the httponly flag + Allowed HTTP Methods: GET, HEAD, POST, OPTIONS + OSVDB-3233: /icons/README: Apache default file found. + /login.php: Admin login page/section found. + 7889 requests: 0 error(s) and 9 item(s) reported on remote host + End Time: 2022-02-05 22:12:48 (GMT-5) (2155 seconds) --------------------------------------------------------------------------- + 1 host(s) tested