38 lines
1.9 KiB
JSON
38 lines
1.9 KiB
JSON
{
|
|
"host": "stockfill.lan.ddnsgeek.com",
|
|
"generated_at": "2026-04-07T03:49:38.723646+00:00",
|
|
"required_reproduction_step_before_ticket": "Before creating a ticket, reproduce vulnerable behavior directly (e.g., crafted request causing data exposure, traversal read, or exploitable crash) and attach request/response proof. Banner or script signature matches alone are insufficient.",
|
|
"findings": [
|
|
{
|
|
"host": "stockfill.lan.ddnsgeek.com",
|
|
"cve": "CVE-2011-3192",
|
|
"affected_host": "stockfill.lan.ddnsgeek.com",
|
|
"endpoint": "443/tcp",
|
|
"product_version_evidence": [
|
|
"ssl/http syn-ack ttl 55 Golang net/http server (Go-IPFS json-rpc or InfluxDB API)"
|
|
],
|
|
"exploit_precondition": "Target must run Apache HTTPD with byte-range handling vulnerable to the Apache Range header DoS condition.",
|
|
"reproducibility": "not-reproduced",
|
|
"disposition": "needs-manual-test",
|
|
"disposition_rationale": "Script/banner evidence exists, but no direct proof of exploit impact was captured in scan output.",
|
|
"required_reproduction_step_before_ticket": "Before creating a ticket, reproduce vulnerable behavior directly (e.g., crafted request causing data exposure, traversal read, or exploitable crash) and attach request/response proof. Banner or script signature matches alone are insufficient.",
|
|
"evidence_sources": [
|
|
{
|
|
"file": "results/stockfill.lan.ddnsgeek.com/scans/_patterns.log",
|
|
"match_count": 2
|
|
},
|
|
{
|
|
"file": "results/stockfill.lan.ddnsgeek.com/scans/tcp443/tcp_443_https_nmap.txt",
|
|
"endpoint": "443/tcp",
|
|
"evidence": "| IDs: BID:49303 CVE:CVE-2011-3192"
|
|
},
|
|
{
|
|
"file": "results/stockfill.lan.ddnsgeek.com/scans/tcp443/tcp_443_https_nmap.txt",
|
|
"endpoint": "443/tcp",
|
|
"evidence": "| https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3192"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|