| CRITICAL |
192.0.2.212 |
2121/FTP |
Authentication |
Anonymous FTP login allowed on port 2121 |
| HIGH |
192.0.2.1 |
1900/UDP |
UPnP |
UPnP Internet Gateway Device (router) found at 192.0.2.1 |
| HIGH |
192.0.2.212 |
|
Hardware Lifecycle |
TP-Link Archer C7 no longer receives security updates |
| HIGH |
192.0.2.212 |
22/SSH |
SSH |
SSH weak MAC algorithms supported on port 22 |
| HIGH |
192.0.2.212 |
22/SSH |
SSH |
SSH weak ciphers supported on port 22 |
| HIGH |
192.0.2.212 |
2323/TCP |
Insecure Protocols |
Telnet-like remote login service detected on port 2323 |
| HIGH |
192.0.2.212 |
5000/HTTP |
Authentication |
Login form on plain HTTP — credentials sent in cleartext |
| HIGH |
192.0.2.212 |
5000/TCP |
End-of-Life Software |
End-of-Life software: php 7.2.34 |
| HIGH |
192.0.2.212 |
5555/TCP |
End-of-Life Software |
End-of-Life software: redis 5.0.14 |
| HIGH |
192.0.2.212 |
8080/HTTP |
Authentication |
Login form on plain HTTP — credentials sent in cleartext |
| HIGH |
192.0.2.212 |
8080/TCP |
End-of-Life Software |
End-of-Life software: nginx 1.14.0 |
| HIGH |
192.0.2.212 |
8088/TCP |
End-of-Life Software |
End-of-Life software: nginx 1.14.0 |
| HIGH |
192.0.2.212 |
8090/TCP |
End-of-Life Software |
End-of-Life software: php 7.2.34 |
| MEDIUM |
192.0.2.61 |
445/UDP |
mDNS Discovery |
mDNS-only device discovered: 192.0.2.61 [Nas.local.] |
| MEDIUM |
192.0.2.61 |
1900/UDP |
UPnP |
UPnP-enabled device at 192.0.2.61: Nas (DS224+) |
| MEDIUM |
192.0.2.84 |
1900/UDP |
UPnP |
UPnP-enabled device at 192.0.2.84: WPS Access Point |
| MEDIUM |
192.0.2.181 |
5353/UDP |
mDNS Discovery |
mDNS-only device discovered: 192.0.2.181 [Sovrum] |
| MEDIUM |
192.0.2.212 |
80/HTTP |
Web Interface |
Admin panel paths found on port 80 |
| MEDIUM |
192.0.2.212 |
443/HTTPS |
HTTP Security Headers |
Missing HSTS header |
| MEDIUM |
192.0.2.212 |
443/HTTPS |
Web Interface |
Admin panel paths found on port 443 |
| MEDIUM |
192.0.2.212 |
2121/FTP |
Encryption |
FTP has no TLS support (cleartext credentials) on port 2121 |
| MEDIUM |
192.0.2.212 |
2121/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2011-0762 in vsftpd 2.3.4 |
| MEDIUM |
192.0.2.212 |
2121/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2011-2189 in vsftpd 2.3.4 |
| MEDIUM |
192.0.2.212 |
2121/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2015-1419 in vsftpd 2.3.4 |
| MEDIUM |
192.0.2.212 |
2121/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2021-3618 in vsftpd 2.3.4 |
| MEDIUM |
192.0.2.212 |
5000/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2001-1534 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
5000/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1307 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
5000/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1580 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
5000/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1581 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
5000/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2006-20001 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
5000/HTTP |
Web Interface |
Admin panel paths found on port 5000 |
| MEDIUM |
192.0.2.212 |
8080/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16843 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8080/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16844 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8080/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16845 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8080/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2019-20372 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8080/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2019-9511 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8080/HTTP |
Web Interface |
Admin panel paths found on port 8080 |
| MEDIUM |
192.0.2.212 |
8088/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16843 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8088/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16844 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8088/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2018-16845 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8088/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2019-20372 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8088/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: ALPINE-CVE-2019-9511 in nginx 1.14.0 |
| MEDIUM |
192.0.2.212 |
8089/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2001-1534 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
8089/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1307 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
8089/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1580 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
8089/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1581 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
8089/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2006-20001 in apache-http-server 2.4.49 |
| MEDIUM |
192.0.2.212 |
8090/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2001-1534 in apache-http-server 2.4.38 |
| MEDIUM |
192.0.2.212 |
8090/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1307 in apache-http-server 2.4.38 |
| MEDIUM |
192.0.2.212 |
8090/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1580 in apache-http-server 2.4.38 |
| MEDIUM |
192.0.2.212 |
8090/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2003-1581 in apache-http-server 2.4.38 |
| MEDIUM |
192.0.2.212 |
8090/TCP |
Known Vulnerabilities (CVE) |
Known vulnerability: DEBIAN-CVE-2006-20001 in apache-http-server 2.4.38 |
| LOW |
192.0.2.212 |
443/HTTPS |
SSL/TLS |
TLS certificate expiring in 41 days |
| LOW |
192.0.2.212 |
2222/SSH |
SSH |
SSH algorithm enumeration failed on port 2222 — manual verification recommended |
| LOW |
192.0.2.212 |
5000/HTTP |
HTTP Security Headers |
Missing Content-Security-Policy header |
| LOW |
192.0.2.212 |
5000/HTTP |
HTTP Security Headers |
Missing X-Content-Type-Options header |
| LOW |
192.0.2.212 |
5000/HTTP |
HTTP Security Headers |
Missing X-Frame-Options header |
| LOW |
192.0.2.212 |
8080/HTTP |
HTTP Security Headers |
Missing Content-Security-Policy header |
| LOW |
192.0.2.212 |
8080/HTTP |
HTTP Security Headers |
Missing X-Content-Type-Options header |
| LOW |
192.0.2.212 |
8080/HTTP |
HTTP Security Headers |
Missing X-Frame-Options header |
| LOW |
192.0.2.212 |
8088/HTTP |
HTTP Security Headers |
Missing Content-Security-Policy header |
| LOW |
192.0.2.212 |
8088/HTTP |
HTTP Security Headers |
Missing X-Content-Type-Options header |
| LOW |
192.0.2.212 |
8088/HTTP |
HTTP Security Headers |
Missing X-Frame-Options header |
| LOW |
192.0.2.212 |
8089/HTTP |
HTTP Security Headers |
Missing Content-Security-Policy header |
| LOW |
192.0.2.212 |
8089/HTTP |
HTTP Security Headers |
Missing X-Content-Type-Options header |
| LOW |
192.0.2.212 |
8089/HTTP |
HTTP Security Headers |
Missing X-Frame-Options header |
| LOW |
192.0.2.212 |
8090/HTTP |
HTTP Security Headers |
Missing Content-Security-Policy header |
| LOW |
192.0.2.212 |
8090/HTTP |
HTTP Security Headers |
Missing X-Content-Type-Options header |
| LOW |
192.0.2.212 |
8090/HTTP |
HTTP Security Headers |
Missing X-Frame-Options header |
| INFO |
192.0.2.1 |
1900/UDP |
UPnP |
UPnP device found: RT-AX92U-7130 |
| INFO |
192.0.2.61 |
1900/UDP |
UPnP |
UPnP device found: Nas (DS224+) |
| INFO |
192.0.2.84 |
1900/UDP |
UPnP |
UPnP device found: WPS Access Point |
| INFO |
192.0.2.212 |
|
Device Identification |
Device identified: Router — TP-Link — Archer C7 — v3.15.1 Build 160616 |
| INFO |
192.0.2.212 |
22/SSH |
SSH |
SSH service detected: OpenSSH 10.0p2 |
| INFO |
192.0.2.212 |
80/HTTP |
Web Interface |
Web interface detected: Pi-hole LabHost |
| INFO |
192.0.2.212 |
443/HTTPS |
SSL/TLS |
JA3S fingerprint computed on port 443 |
| INFO |
192.0.2.212 |
443/HTTPS |
SSL/TLS |
TLS certificate: CN=pi.hole |
| INFO |
192.0.2.212 |
443/HTTPS |
Web Interface |
Web interface detected: Pi-hole LabHost |
| INFO |
192.0.2.212 |
2121/FTP |
FTP |
FTP service detected: vsftpd 2.3.4 |
| INFO |
192.0.2.212 |
2222/SSH |
SSH |
SSH service detected: OpenSSH 7.4 |
| INFO |
192.0.2.212 |
5000/HTTP |
Web Interface |
Web interface detected: Legacy Apache Test App |
| INFO |
192.0.2.212 |
5000/HTTP |
Web Technology |
Web technology detected: Apache HTTP Server 2.4.49 |
| INFO |
192.0.2.212 |
5000/HTTP |
Web Technology |
Web technology detected: PHP 7.2.34 |
| INFO |
192.0.2.212 |
8080/HTTP |
Web Interface |
Web interface detected: TP-Link Archer C7 |
| INFO |
192.0.2.212 |
8080/HTTP |
Web Technology |
Web technology detected: Nginx 1.14.0 |
| INFO |
192.0.2.212 |
8080/HTTP |
Web Technology |
Web technology detected: PHP 7.2.34 |
| INFO |
192.0.2.212 |
8088/HTTP |
Web Interface |
Web interface detected: Welcome to nginx! |
| INFO |
192.0.2.212 |
8088/HTTP |
Web Technology |
Web technology detected: Nginx 1.14.0 |
| INFO |
192.0.2.212 |
8089/HTTP |
Web Interface |
Web interface detected: no title |
| INFO |
192.0.2.212 |
8089/HTTP |
Web Technology |
Web technology detected: Apache HTTP Server 2.4.49 |
| INFO |
192.0.2.212 |
8089/HTTP |
Web Technology |
Web technology detected: UNIX |
| INFO |
192.0.2.212 |
8090/HTTP |
Web Interface |
Web interface detected: phpinfo() |
| INFO |
192.0.2.212 |
8090/HTTP |
Web Technology |
Web technology detected: Apache HTTP Server 2.4.38 |
| INFO |
192.0.2.212 |
8090/HTTP |
Web Technology |
Web technology detected: Debian |
| INFO |
192.0.2.212 |
8090/HTTP |
Web Technology |
Web technology detected: PHP 7.2.34 |
| INFO |
local |
53/UDP |
DNS Security |
DNS responses match trusted resolver — no hijacking detected |