Reading the observatory store…
Reading the observatory store…
First seen 22 Sep 2026, last seen 24 Sep 2026 05:10 UTC (24h ago). 1 observations on record. Location is an estimate derived from registration data — the source and confidence are stated below.
| Port | Service | Product | Technologies | TLS | State | Banner | Last seen |
|---|---|---|---|---|---|---|---|
| 22 tcp / tcp | ssh | OpenSSH 9.6p1 |
| not negotiated | open | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.19 | 24 Sep 2026 24h ago |
| 80 tcp / tcp | http | Apache HTTP Server 2.4.58 |
| not negotiated | open | no banner captured | 24 Sep 2026 24h ago |
| 443 tcp / tcp | https | Apache HTTP Server 2.4.67 |
| TLSv1.3certificate
| open | no banner captured | 24 Sep 2026 24h ago |
| Observed at | Source | Collector | Confidence | Changed | State | Content hash |
|---|---|---|---|---|---|---|
| 24 Sep 2026 05:10 UTC | fingerprint | fingerprint-1 | high | changed | {"services":{"22/tcp":{"state":"open","product":"OpenSSH","version":"9.6p1","cert_sha256":"","tls_version":"","service_type":"ssh"},"80/tcp":{"state":"open","p… | 5ae0503d3f34f23fac5b9de9f231b4f0ee13591… |
| Detected at | Type | Field | Previous | Current | Significance | Confidence |
|---|---|---|---|---|---|---|
| 24 Sep 2026 05:10 UTC | NEW SERVICE | service:80/tcp | — | Apache HTTP Server 2.4.58 | low | unknown |
| 24 Sep 2026 05:10 UTC | NEW SERVICE | service:443/tcp | — | Apache HTTP Server 2.4.67 / TLSv1.3 | low | unknown |
| 24 Sep 2026 05:10 UTC | NEW SERVICE | service:22/tcp | — | OpenSSH 9.6p1 | low | unknown |
| 24 Sep 2026 05:10 UTC | NEW ASSET | — | — | asset with 3 observed open endpoint(s) | low | unknown |
22 matches on this asset, each one unverified. Treat these as leads for manual review, never as findings.
| Identifier | Severity | CVSS | Product / version | Status | Match confidence | Evidence | Detected |
|---|---|---|---|---|---|---|---|
CVE-2023-38709 Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses. This issue affects Apache HTTP Server: through 2.4.58. | high | 7.3 | Apache HTTP Server 2.4.58 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.58\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2023-43622 An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resou… | high | 7.5 | Apache HTTP Server 2.4.58 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.58\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-48913 Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted. This issue affects Apache HTTP Server: from 2.4.55 through 2.4.67. | high | 7.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-44631 Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the configuration. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are recommended to u… | critical | 9.8 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-44186 Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server. This issue affects undefined: fr… | high | 7.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-44185 Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are recom… | high | 7.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-44119 Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user. This issue affects Apache HTTP… | medium | 5.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-43951 Out-of-bounds Read vulnerability in Apache HTTP Server with mod_headers and mod_mime and multiple response languages. This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. | medium | 6.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-42536 Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are reco… | high | 7.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-34356 Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie* This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are r… | high | 7.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-34355 A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend. Users are recommended to upgrade to version 2.4.68, which fixes this issue. | high | 7.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-29170 A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or revers… | medium | 6.1 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-29167 Use After Free vulnerability in Apache HTTP Server with mod_ldap in per-directory configuration This issue affects Apache HTTP Server: from 2.4.0 through 2.4.67. Users are recommended to upgrade to v… | critical | 9.8 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-28780 Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy… | critical | 9.8 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-29168 Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's mod_md via OCSP response data. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.66. Users are … | high | 7.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-33523 HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers. This issue affects Apache HTTP Server: from through 2.4.66. Users are recom… | medium | 6.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-33007 A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration. U… | medium | 5.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-33006 A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker. Users are recommended to upgrade to version 2.4.67, which fixes thi… | medium | 4.8 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-23918 Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol. This issue affects Apache HTTP Server: 2.4.66. Users are recommended to upgrade to version 2.4.67, which fix… | high | 8.8 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-34032 Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fix… | medium | 5.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-33857 Out-of-bounds Read vulnerability in mod_proxy_ajp of Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the iss… | medium | 5.3 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
CVE-2026-34059 Buffer Over-read vulnerability in Apache HTTP Server. This issue affects Apache HTTP Server: through 2.4.66. Users are recommended to upgrade to version 2.4.67, which fixes the issue. | high | 7.5 | Apache HTTP Server 2.4.67 | potential exposure — unverified | medium | {"match_reason":"keyword match on \"Apache HTTP Server 2.4.67\"","note":"version-string match only; not a confirmed exp… | 24 Sep 2026 |
Only one state has been recorded. The current document is shown without a predecessor — no comparison is implied.
{
"id": "c320c81ba0de2f7e3d24fd22715a06266",
"type": "ipv4",
"value": "150.107.206.188",
"hostname": null,
"reverseDns": null,
"asn": {
"number": 58504,
"name": "TECHMINDS-NP - TECHMINDS NETWORKS PVT. LTD."
},
"organization": {
"id": "cd3afcb8b352b5a6860e1ec292e8fed57",
"name": "TECHMINDS-NP - TECHMINDS NETWORKS PVT. LTD."
},
"location": {
"country": "NP",
"city": "Pyūthān",
"province": "Lumbini Province",
"district": "",
"confidence": "low",
"source": "ip-api.com"
},
"scopeStatus": "in_scope",
"priority": "NORMAL",
"firstSeen": "2026-09-22T07:25:57.994Z",
"lastSeen": "2026-09-24T05:10:02.668Z",
"observationCount": 1,
"openServices": 3,
"serviceCount": 3,
"technologies": [
"apache-http-server",
"lets-encrypt",
"openssh",
"php"
],
"vulnerabilityMatches": [
{
"id": "c8baebcb7292f177f6242be39da054852",
"cve": "CVE-2023-38709",
"severity": "high",
"cvssScore": 7.3,
"summary": "Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses.\n\nThis issue affects Apache HTTP Server: through 2.4.58.",
"product": "Apache HTTP Server",
"version": "2.4.58",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.58\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.58\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:49.073Z",
"assetValue": "150.107.206.188",
"serviceId": "cc49b34dd346a2ebfaa9924d26d5dd7bc",
"port": 80,
"technologySlug": "apache-http-server"
},
{
"id": "c2eee3656c64fc2a0a4e3e686f30bcc05",
"cve": "CVE-2023-43622",
"severity": "high",
"cvssScore": 7.5,
"summary": "An attacker, opening a HTTP/2 connection with an initial window size of 0, was able to block handling of that connection indefinitely in Apache HTTP Server. This could be used to exhaust worker resources in the server, similar to the well known \"slow loris\" attack pattern.\nThis has been fixed in version 2.4.58, so that such connection are terminated properly after the configured connection timeout.\n\nThis issue affects Apache HTTP Server: from 2.4.55 through 2.4.57.\n\nUsers are recommended to upgrade to version 2.4.58, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.58",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.58\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.58\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:49.070Z",
"assetValue": "150.107.206.188",
"serviceId": "cc49b34dd346a2ebfaa9924d26d5dd7bc",
"port": 80,
"technologySlug": "apache-http-server"
},
{
"id": "cb639eb3127f4a39afcf69864eb0d4a9f",
"cve": "CVE-2026-48913",
"severity": "high",
"cvssScore": 7.3,
"summary": "Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted.\n\nThis issue affects Apache HTTP Server: from 2.4.55 through 2.4.67.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.339Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c7f5aeab03fcb2703a50821288ae31536",
"cve": "CVE-2026-44631",
"severity": "critical",
"cvssScore": 9.8,
"summary": "Buffer Underwrite vulnerability in Apache HTTP Server on crafted regular expressions in the configuration.\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.336Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c7aadfa28f3beeef26632adf47d9e5aa1",
"cve": "CVE-2026-44186",
"severity": "high",
"cvssScore": 7.3,
"summary": "Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in the mod_proxy_ftp module in Apache HTTP Server with an attacker controlled backend FTP server.\n\nThis issue affects undefined: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.334Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c3daac028b5f77fdf312905d17431e5b9",
"cve": "CVE-2026-44185",
"severity": "high",
"cvssScore": 7.3,
"summary": "Buffer Over-read vulnerability in Apache HTTP Server via outbound OCSP requests to an attacker controlled OCSP server\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.331Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c5b13a0f40c844a610811ac7de9f356ec",
"cve": "CVE-2026-44119",
"severity": "medium",
"cvssScore": 5.5,
"summary": "Improper Privilege Management vulnerability in Apache HTTP Server 2.4.67 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.\n\nThis issue affects Apache HTTP Server: from through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.329Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "cefcdca1beafc3e78bb2825c234d7d266",
"cve": "CVE-2026-43951",
"severity": "medium",
"cvssScore": 6.5,
"summary": "Out-of-bounds Read vulnerability in Apache HTTP Server with mod_headers and mod_mime and multiple response languages.\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.327Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "cb9bdef6d1e9fff35c5edb859be374428",
"cve": "CVE-2026-42536",
"severity": "high",
"cvssScore": 7.5,
"summary": "Heap-based Buffer Overflow vulnerability in Apache HTTP Server with mod_xml2enc, xml2StartParse, and untrusted content\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.325Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c3e05427597aec32ba79830e3b918e1d0",
"cve": "CVE-2026-34356",
"severity": "high",
"cvssScore": 7.5,
"summary": "Heap-based Buffer Overflow vulnerability in Apache HTTP Server with malicious backend servers and ProxyPassReverseCookie*\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.322Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c3a4a364959406cd507f575826c9adf99",
"cve": "CVE-2026-34355",
"severity": "high",
"cvssScore": 7.5,
"summary": "A buffer overflow in mod_proxy_html in Apache HTTP Server 2.4.67 and earlier allows an attack by an untrusted backend.\nUsers are recommended to upgrade to version 2.4.68, which fixes this issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.320Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c9f5c5a0c93c4a286c7c5a28632c79e69",
"cve": "CVE-2026-29170",
"severity": "medium",
"cvssScore": 6.1,
"summary": "A cross-site scripting vulnerability exists in mod_proxy_ftp's HTML directory list generation in Apache HTTP Server 2.4.67 and earlier when listing FTP directory contents either via forward or reverse proxy configuration.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes this issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.317Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c242f92c88e8f10e68fed7b100b18c587",
"cve": "CVE-2026-29167",
"severity": "critical",
"cvssScore": 9.8,
"summary": "Use After Free vulnerability in Apache HTTP Server with mod_ldap in per-directory configuration\n\nThis issue affects Apache HTTP Server: from 2.4.0 through 2.4.67.\n\nUsers are recommended to upgrade to version 2.4.68, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.315Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c5bd2ed1159ae3f7f7bb743c2d9e17946",
"cve": "CVE-2026-28780",
"severity": "critical",
"cvssScore": 9.8,
"summary": "Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server.\nIf mod_proxy_ajp connects to a malicious AJP server this AJP server can send a malicious AJP message back to mod_proxy_ajp and cause it to write 4 attacker controlled bytes after the end of a heap based buffer.\n\nThis issue affects Apache HTTP Server: through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.313Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "cd239a3cefc930ebf1089b33d77c7155a",
"cve": "CVE-2026-29168",
"severity": "high",
"cvssScore": 7.3,
"summary": "Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's mod_md via OCSP response data.\n\nThis issue affects Apache HTTP Server: from 2.4.30 through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.310Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "cb4dfddd54e036ed315c27990eba5526b",
"cve": "CVE-2026-33523",
"severity": "medium",
"cvssScore": 6.5,
"summary": "HTTP response splitting vulnerability in multiple Apache HTTP Server modules with untrusted or compromised backend servers.\n\nThis issue affects Apache HTTP Server: from through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.308Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c16318960ebe56f1ea97dbb9380842ba0",
"cve": "CVE-2026-33007",
"severity": "medium",
"cvssScore": 5.3,
"summary": "A NULL pointer dereference in the mod_authn_socache in Apache HTTP Server 2.4.66 and earlier allows an unauthenticated remote user to crash a child process in a caching forward proxy configuration.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes this issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.306Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c4ddf844cb62d791668a3e9b65c873aa1",
"cve": "CVE-2026-33006",
"severity": "medium",
"cvssScore": 4.8,
"summary": "A timing attack against mod_auth_digest in Apache HTTP Server 2.4.66 allows a bypass of Digest authentication by a remote attacker.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes this issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.304Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c00d2e952cf47487fbcbbd1d359c0e5fd",
"cve": "CVE-2026-23918",
"severity": "high",
"cvssScore": 8.8,
"summary": "Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.\n\nThis issue affects Apache HTTP Server: 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.301Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "ca65a2f62447e61cd9bbcf69e0ab3f33e",
"cve": "CVE-2026-34032",
"severity": "medium",
"cvssScore": 5.3,
"summary": "Improper Null Termination, Out-of-bounds Read vulnerability in Apache HTTP Server.\n\nThis issue affects Apache HTTP Server: through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.299Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "c5ddf4ede8e9e39f79e1b1e0104d50d45",
"cve": "CVE-2026-33857",
"severity": "medium",
"cvssScore": 5.3,
"summary": "Out-of-bounds Read vulnerability in mod_proxy_ajp of \n\nApache HTTP Server.\n\nThis issue affects Apache HTTP Server: through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.296Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
},
{
"id": "cbd335da52963f9f259eeefa73c73efad",
"cve": "CVE-2026-34059",
"severity": "high",
"cvssScore": 7.5,
"summary": "Buffer Over-read vulnerability in Apache HTTP Server.\n\nThis issue affects Apache HTTP Server: through 2.4.66.\n\nUsers are recommended to upgrade to version 2.4.67, which fixes the issue.",
"product": "Apache HTTP Server",
"version": "2.4.67",
"status": "potential",
"matchConfidence": "medium",
"evidence": "{\"match_reason\":\"keyword match on \\\"Apache HTTP Server 2.4.67\\\"\",\"note\":\"version-string match only; not a confirmed exposure\",\"observed_product\":\"Apache HTTP Server\",\"observed_version\":\"2.4.67\",\"source\":\"nvd\"}",
"detectedAt": "2026-09-24T05:24:47.293Z",
"assetValue": "150.107.206.188",
"serviceId": "c5db2529196ed94833d75e4e194c375f1",
"port": 443,
"technologySlug": "php"
}
],
"network": {
"id": "c37ff362bfc194d5e8ad2a47a23d3a98b",
"prefix": "150.107.206.0/24",
"ipVersion": 4
},
"services": [
{
"id": "c937046228c348e5ef3327c79f5ea516d",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"port": 22,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "ssh",
"product": "OpenSSH",
"productVersion": "9.6p1",
"tlsVersion": null,
"banner": "SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.19",
"state": "open",
"firstSeen": "2026-09-24T05:10:02.324Z",
"lastSeen": "2026-09-24T05:10:02.324Z",
"observationCount": 0,
"technologies": [
{
"slug": "openssh",
"name": "OpenSSH",
"category": "remote-access",
"vendor": "OpenBSD Project",
"version": "9.6p1",
"confidence": "high",
"evidence": "SSH banner: SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.19",
"detectedAt": "2026-09-24T05:10:02.359Z"
}
],
"certificate": null
},
{
"id": "cc49b34dd346a2ebfaa9924d26d5dd7bc",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"port": 80,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "http",
"product": "Apache HTTP Server",
"productVersion": "2.4.58",
"tlsVersion": null,
"banner": null,
"state": "open",
"firstSeen": "2026-09-24T05:10:02.417Z",
"lastSeen": "2026-09-24T05:10:02.417Z",
"observationCount": 0,
"technologies": [
{
"slug": "apache-http-server",
"name": "Apache HTTP Server",
"category": "web-server",
"vendor": "Apache Software Foundation",
"version": "2.4.58",
"confidence": "high",
"evidence": "server: Apache/2.4.58 (Ubuntu)",
"detectedAt": "2026-09-24T05:10:02.443Z"
}
],
"certificate": null
},
{
"id": "c5db2529196ed94833d75e4e194c375f1",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"port": 443,
"protocol": "tcp",
"transport": "tcp",
"serviceType": "https",
"product": "Apache HTTP Server",
"productVersion": "2.4.67",
"tlsVersion": "TLSv1.3",
"banner": null,
"state": "open",
"firstSeen": "2026-09-24T05:10:02.482Z",
"lastSeen": "2026-09-24T05:10:02.482Z",
"observationCount": 0,
"technologies": [
{
"slug": "apache-http-server",
"name": "Apache HTTP Server",
"category": "web-server",
"vendor": "Apache Software Foundation",
"version": "2.4.67",
"confidence": "high",
"evidence": "server: Apache/2.4.67 (Debian)",
"detectedAt": "2026-09-24T05:10:02.503Z"
},
{
"slug": "php",
"name": "PHP",
"category": "language",
"vendor": "PHP Group",
"version": "8.5.7",
"confidence": "high",
"evidence": "X-Powered-By: PHP/8.5.7",
"detectedAt": "2026-09-24T05:10:02.559Z"
},
{
"slug": "lets-encrypt",
"name": "Let's Encrypt",
"category": "certificate-authority",
"vendor": "Internet Security Research Group",
"version": null,
"confidence": "medium",
"evidence": "TLS certificate issuer: CN=YE1,O=Let's Encrypt,C=US",
"detectedAt": "2026-09-24T05:10:02.594Z"
}
],
"certificate": {
"id": "c1d30288566aea97a94f9b300ae063fb6",
"sha256": "ba6e5cda20b3bb61224d11ecf4ba5785047aaacb3fdf5b6fd72031d8b152e931",
"subject": "CN=cloud.pyuthanmun.gov.np",
"issuer": "CN=YE1,O=Let's Encrypt,C=US",
"commonName": "cloud.pyuthanmun.gov.np",
"notBefore": "2026-08-18T07:49:19.000Z",
"notAfter": "2026-11-16T07:49:18.000Z",
"sans": [
"cloud.pyuthanmun.gov.np"
],
"keyAlgo": "ECDSA",
"sigAlgo": "ECDSA-SHA384"
}
}
],
"certificates": [
{
"id": "c1d30288566aea97a94f9b300ae063fb6",
"sha256": "ba6e5cda20b3bb61224d11ecf4ba5785047aaacb3fdf5b6fd72031d8b152e931",
"subject": "CN=cloud.pyuthanmun.gov.np",
"issuer": "CN=YE1,O=Let's Encrypt,C=US",
"commonName": "cloud.pyuthanmun.gov.np",
"notBefore": "2026-08-18T07:49:19.000Z",
"notAfter": "2026-11-16T07:49:18.000Z",
"sans": [
"cloud.pyuthanmun.gov.np"
],
"keyAlgo": "ECDSA",
"sigAlgo": "ECDSA-SHA384"
}
],
"recentObservations": [
{
"id": "ced4796af5336afeb6fac7b5eb216f4e0",
"observedAt": "2026-09-24T05:10:02.614Z",
"source": "fingerprint",
"collector": "fingerprint-1",
"confidence": "high",
"state": {
"services": {
"22/tcp": {
"state": "open",
"product": "OpenSSH",
"version": "9.6p1",
"cert_sha256": "",
"tls_version": "",
"service_type": "ssh"
},
"80/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.58",
"cert_sha256": "",
"tls_version": "",
"service_type": "http"
},
"443/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.67",
"cert_sha256": "ba6e5cda20b3bb61224d11ecf4ba5785047aaacb3fdf5b6fd72031d8b152e931",
"tls_version": "TLSv1.3",
"service_type": "https"
}
},
"technologies": [
"apache-http-server",
"lets-encrypt",
"openssh",
"php"
]
},
"evidence": {
"ports": [
21,
22,
23,
25,
53,
80,
110,
143,
443,
445,
465,
587,
993,
995,
1433,
1521,
3306,
3389,
5432,
5900,
6379,
8080,
8443,
8888,
9200,
27017
],
"services": 3,
"reachable": true,
"reverse_dns": "",
"ports_probed": 26,
"technologies": [
"apache-http-server",
"lets-encrypt",
"openssh",
"php"
],
"open_services": 3,
"probe_duration": 25072
},
"contentHash": "5ae0503d3f34f23fac5b9de9f231b4f0ee13591ac7df3d8be2bf2c0f72a34c98",
"changed": true
}
],
"recentChanges": [
{
"id": "ce38fd58ca0af114536ca93f47e9d3948",
"changeType": "NEW_SERVICE",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"field": "service:80/tcp",
"previousValue": null,
"currentValue": "Apache HTTP Server 2.4.58",
"detectedAt": "2026-09-24T05:10:02.659Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "endpoint responded on first observation",
"serviceId": null
},
{
"id": "c6ec05bda02d38a209e1ea024c9c94566",
"changeType": "NEW_SERVICE",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"field": "service:443/tcp",
"previousValue": null,
"currentValue": "Apache HTTP Server 2.4.67 / TLSv1.3",
"detectedAt": "2026-09-24T05:10:02.649Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "endpoint responded on first observation",
"serviceId": null
},
{
"id": "c9f9a20de04541843aba8598366481af7",
"changeType": "NEW_SERVICE",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"field": "service:22/tcp",
"previousValue": null,
"currentValue": "OpenSSH 9.6p1",
"detectedAt": "2026-09-24T05:10:02.643Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "endpoint responded on first observation",
"serviceId": null
},
{
"id": "cc614bc44a6d790a9d8ec5397df6bbffe",
"changeType": "NEW_ASSET",
"assetId": "c320c81ba0de2f7e3d24fd22715a06266",
"assetValue": null,
"field": null,
"previousValue": null,
"currentValue": "asset with 3 observed open endpoint(s)",
"detectedAt": "2026-09-24T05:10:02.630Z",
"significance": "low",
"severity": "notice",
"confidence": null,
"detail": "asset observed for the first time",
"serviceId": null
}
],
"dnsRecords": [],
"state": {
"current": {
"services": {
"22/tcp": {
"state": "open",
"product": "OpenSSH",
"version": "9.6p1",
"cert_sha256": "",
"tls_version": "",
"service_type": "ssh"
},
"80/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.58",
"cert_sha256": "",
"tls_version": "",
"service_type": "http"
},
"443/tcp": {
"state": "open",
"product": "Apache HTTP Server",
"version": "2.4.67",
"cert_sha256": "ba6e5cda20b3bb61224d11ecf4ba5785047aaacb3fdf5b6fd72031d8b152e931",
"tls_version": "TLSv1.3",
"service_type": "https"
}
},
"technologies": [
"apache-http-server",
"lets-encrypt",
"openssh",
"php"
]
},
"previous": null,
"comparable": false
}
}