78.189.31.27
{
  "scan_id": 1761506079,
  "ip": "78.189.31.27",
  "is_ipv4": true,
  "is_ipv6": false,
  "location": {
    "network": "78.189.28.0/22",
    "postal_code": "34080",
    "coordinates": {
      "latitude": "41.0329",
      "longitude": "28.9529"
    },
    "geo_point": "41.0329, 28.9529",
    "locale_code": "en",
    "continent": "Asia",
    "country_code": "TR",
    "country_name": "Türkiye",
    "city": "Istanbul"
  },
  "location_updated_at": "2025-10-28T16:36:08Z",
  "asn": {
    "number": "AS47331",
    "organization": "Turk Telekom",
    "country_code": ""
  },
  "asn_updated_at": "0001-01-01T00:00:00Z",
  "whois": {
    "network": "78.160.0.0/11",
    "organization": "TurkTelekom",
    "descr": "TurkTelekom",
    "_encoding": {
      "raw": "BASE64"
    }
  },
  "whois_updated_at": "2024-12-09T08:53:07Z",
  "tags": [
    {
      "name": "is_anonymous_proxy",
      "pretty_name": "Anonymous Proxy",
      "value": false,
      "last_updated_at": "2025-10-28T16:36:08Z"
    },
    {
      "name": "is_cdn",
      "pretty_name": "CDN",
      "value": false,
      "last_updated_at": "2025-10-28T22:26:17Z"
    },
    {
      "name": "is_satellite_provider",
      "pretty_name": "Satellite Provider",
      "value": false,
      "last_updated_at": "2025-10-28T16:36:08Z"
    }
  ],
  "hostnames": [
    {
      "name": "78.189.31.27.static.ttnet.com.tr",
      "last_updated_at": "2025-10-31T01:49:51.534693922Z"
    }
  ],
  "services": [
    {
      "port": 443,
      "protocol": "tcp",
      "name": "http",
      "version": "",
      "product": "Apache httpd",
      "extra_info": "",
      "tunnel": "ssl",
      "softwares": [
        {
          "uri": "cpe:/a:apache:http_server",
          "part": "a",
          "vendor": "apache",
          "product": "http_server",
          "version": "ANY",
          "language": "ANY",
          "edition": "ANY",
          "update": "ANY"
        }
      ],
      "modules": {
        "http": {
          "body": "<!DOCTYPE html>\n<html>\n<head>\n    \n    \n\n    <meta charset=\"utf-8\"/>\n    <meta http-equiv=\"X-UA-Compatible\" content=\"IE=Edge\" />\n    <title>Logon - SINEMA Remote Connect</title>\n\n    <link rel=\"stylesheet\" href=\"/static/css/normalize.css\"/>\n    <link rel=\"stylesheet\" href=\"/static/css/layout.css\"/>\n    <link rel=\"stylesheet\" href=\"/static/css/login.css\"/>\n    <link rel=\"stylesheet\" href=\"/static/css/font-awesome.css\"/>\n\n    <script type=\"text/javascript\" src=\"/static/js/jquery.js\"></script>\n    <script type=\"text/javascript\" src=\"/static/js/sinemarc.js\"></script>\n</head>\n<body>\n\n    \n\n\n\n<div class=\"header clearfix\">\n    <img src=\"/static/img/logo.gif\" alt=\"SIEMENS\" class=\"logo\"/>\n    <span class=\"product-name\">SINEMA Remote Connect</span>\n\n    <div class=\"language-selector\">\n        <form action=\"/i18n/setlang/\" method=\"POST\">\n            <input type='hidden' name='csrfmiddlewaretoken' value='kZzWdsYiSyuHXmp0tQuUtz4mVqmbzB5A' />\n\n            <label for=\"id_language_selector\">Language</label>:\n            <select id=\"id_language_selector\" name=\"language\" onChange=\"submit()\">\n                \n                \n                    <option value=\"de\">\n                        Deutsch\n                    </option>\n                \n                    <option value=\"en\" selected=\"selected\">\n                        English\n                    </option>\n                \n            </select>\n        </form>\n    </div>\n\n    <div class=\"clock\">1761828245#en#0#</div>\n\n    <div class=\"online-help\">\n        <a href=\"#\" onClick=\"openHelpWindow('/static/help/en/login_help.htm');\">Help<i class=\"fa fa-question-circle fa-fw\"></i></a>\n    </div>\n</div>\n\n\n    <div class=\"content\">\n\n\n\n        <form action=\"/wbm/login/\" method=\"POST\" class=\"login-form\">\n            <input type='hidden' name='csrfmiddlewaretoken' value='kZzWdsYiSyuHXmp0tQuUtz4mVqmbzB5A' />\n            <input id=\"id_utcoffset\" name=\"utcoffset\" type=\"hidden\" value=\"0\"/>\n\n            <div class=\"form-row\">\n                <label for=\"id_username\">User name:</label>\n                <input id=\"id_username\" maxlength=\"254\" name=\"username\" type=\"text\" />\n            </div>\n\n            <div class=\"form-row\">\n                <label for=\"id_password\">Password:</label>\n                <input id=\"id_password\" name=\"password\" type=\"password\" autocomplete=\"off\"/>\n            </div>\n\n            \n\n            <div class=\"form-row\">\n                <label for=\"id_submit\"> </label>\n                <button id=\"id_submit\" type=\"submit\"><span class=\"button\">Log on</span></button>\n            </div>\n        </form>\n\n        \n\n        \n\n         <div class=\"sep\"></div>\n\n        <div class=\"pki\">\n            \n                <img src=\"/static/img/chip-icon.png\">\n            \n            <p>PKI Login</p>\n        </div>\n\n\n    </div>\n\n    <script type=\"text/javascript\">\n    <!--\n\n    var d = new Date();\n    $(\"#id_utcoffset\").prop('value', d.getTimezoneOffset() * -1);\n\n    var usernameInput = $(\"#id_username\");\n    usernameInput.focus().val(usernameInput.val());\n\n    -->\n    </script>\n</body>\n</html>\n",
          "body_murmur": -1506908826,
          "body_sha256": "7ee39062f894d1f40540f19b75da2680ff19df06a7dc44b9cfe7239769b805f4",
          "component": [
            "Apache HTTP Server",
            "Django",
            "Python"
          ],
          "content_length": -1,
          "headers": {
            "cache_control": [
              "max-age=0"
            ],
            "content_language": [
              "en"
            ],
            "content_type": [
              "text/html; charset=utf-8"
            ],
            "date": [
              "Thu, 30 Oct 2025 12:44:05 GMT"
            ],
            "expires": [
              "Thu, 30 Oct 2025 12:44:05 GMT"
            ],
            "last_modified": [
              "Thu, 30 Oct 2025 12:44:05 GMT"
            ],
            "server": [
              "Apache"
            ],
            "set_cookie": [
              "csrftoken=kZzWdsYiSyuHXmp0tQuUtz4mVqmbzB5A; expires=Thu, 29-Oct-2026 12:44:05 GMT; httponly; Max-Age=31449600; Path=/; secure",
              "sessionid=v5ktx1e1ww3afyxi3yg84fc41lqwp8nt; httponly; Path=/; secure"
            ],
            "vary": [
              "Cookie,Accept-Language,Accept-Encoding"
            ],
            "x_content_type_options": [
              "nosniff"
            ],
            "x_xss_protection": [
              "1; mode=block"
            ]
          },
          "protocol": "HTTP/1.1",
          "redirects": [
            {
              "headers": {
                "content_language": [
                  "en"
                ],
                "content_length": [
                  "0"
                ],
                "content_type": [
                  "text/html; charset=utf-8"
                ],
                "date": [
                  "Thu, 30 Oct 2025 12:44:05 GMT"
                ],
                "location": [
                  "https://78.189.31.27/wbm/login/"
                ],
                "server": [
                  "Apache"
                ],
                "vary": [
                  "Accept-Language,Cookie"
                ],
                "x_content_type_options": [
                  "nosniff"
                ],
                "x_xss_protection": [
                  "1; mode=block"
                ]
              },
              "location": "https://78.189.31.27/wbm/login/",
              "protocol": "HTTP/1.1",
              "status_code": 302,
              "status_line": "302 FOUND"
            }
          ],
          "request": {
            "headers": {
              "accept": [
                "*/*"
              ],
              "referer": [
                "https://78.189.31.27"
              ],
              "user_agent": [
                "Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)"
              ]
            },
            "method": "GET",
            "url": {
              "host": "78.189.31.27",
              "path": "/wbm/login/",
              "scheme": "https"
            }
          },
          "status_code": 200,
          "title": "Logon - SINEMA Remote Connect"
        },
        "tls": {
          "certificate": {
            "extensions": {
              "basic_constraints": {
                "is_ca": true
              },
              "extended_key_usage": {
                "any": false,
                "apple_code_signing": false,
                "apple_code_signing_development": false,
                "apple_code_signing_third_party": false,
                "apple_crypto_development_env": false,
                "apple_crypto_env": false,
                "apple_crypto_maintenance_env": false,
                "apple_crypto_production_env": false,
                "apple_crypto_qos": false,
                "apple_crypto_test_env": false,
                "apple_crypto_tier0_qos": false,
                "apple_crypto_tier1_qos": false,
                "apple_crypto_tier2_qos": false,
                "apple_crypto_tier3_qos": false,
                "apple_ichat_encryption": false,
                "apple_ichat_signing": false,
                "apple_resource_signing": false,
                "apple_software_update_signing": false,
                "apple_system_identity": false,
                "client_auth": false,
                "code_signing": false,
                "dvcs": false,
                "eap_over_lan": false,
                "eap_over_ppp": false,
                "email_protection": false,
                "ipsec_end_system": false,
                "ipsec_intermediate_system_usage": false,
                "ipsec_tunnel": false,
                "ipsec_user": false,
                "microsoft_ca_exchange": false,
                "microsoft_cert_trust_list_signing": false,
                "microsoft_csp_signature": false,
                "microsoft_document_signing": false,
                "microsoft_drm": false,
                "microsoft_drm_individualization": false,
                "microsoft_efs_recovery": false,
                "microsoft_embedded_nt_crypto": false,
                "microsoft_encrypted_file_system": false,
                "microsoft_enrollment_agent": false,
                "microsoft_kernel_mode_code_signing": false,
                "microsoft_key_recovery_21": false,
                "microsoft_key_recovery_3": false,
                "microsoft_license_server": false,
                "microsoft_licenses": false,
                "microsoft_lifetime_signing": false,
                "microsoft_mobile_device_software": false,
                "microsoft_nt5_crypto": false,
                "microsoft_oem_whql_crypto": false,
                "microsoft_qualified_subordinate": false,
                "microsoft_root_list_signer": false,
                "microsoft_server_gated_crypto": false,
                "microsoft_sgc_serialized": false,
                "microsoft_smart_display": false,
                "microsoft_smartcard_logon": false,
                "microsoft_system_health": false,
                "microsoft_system_health_loophole": false,
                "microsoft_timestamp_signing": false,
                "microsoft_whql_crypto": false,
                "netscape_server_gated_crypto": false,
                "ocsp_signing": false,
                "sbgp_cert_aa_service_auth": false,
                "server_auth": true,
                "time_stamping": false
              },
              "key_usage": {
                "certificate_sign": false,
                "content_commitment": false,
                "crl_sign": false,
                "data_encipherment": false,
                "decipher_only": false,
                "digital_signature": true,
                "encipher_only": false,
                "key_agreement": false,
                "key_encipherment": true
              },
              "subject_alt_name": {
                "dns_names": [
                  "sinemarc.example.com"
                ],
                "ip_address": [
                  "78.189.31.27",
                  "192.168.2.3"
                ]
              }
            },
            "fingerprint_md5": "6BF030AFFD30C6A88741DF952D6FF7CB",
            "fingerprint_sha1": "E3ED7BA95136D22709DC5E52C16FCBDDEE8DCCCA",
            "fingerprint_sha256": "78616C96EA05AAF227F0AEBD8ABE26871DE24001946E94414C8C95D26C99E06A",
            "issuer": {
              "common_name": [
                "CA 948180 SINEMA RC"
              ]
            },
            "issuer_dn": "/CN=CA 948180 SINEMA RC",
            "jarm": "16d16d16d14d16d00016d16d16d16d7bf6e7a34fd706e3a25b03da2a17f6af",
            "redacted": false,
            "revocation": {
              "ocsp": {
                "reason": "UNKNOWN",
                "revoked": false
              }
            },
            "serial_number": "30",
            "signature": {
              "algorithm": {
                "name": "SHA256-RSA",
                "oid": "1.2.840.113549.1.1.11"
              },
              "self_signed": false,
              "value": "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"
            },
            "subject": {
              "common_name": [
                "sinemarc.example.com"
              ]
            },
            "subject_alt_name": {
              "dns_names": [
                "sinemarc.example.com"
              ],
              "extended_dns_names": [
                {
                  "domain": "example",
                  "fld": "example.com",
                  "subdomain": "sinemarc",
                  "tld": "com"
                }
              ]
            },
            "subject_dn": "/CN=sinemarc.example.com",
            "subject_key_info": {
              "_key": "rsa",
              "dh": [],
              "dsa": [],
              "ecdsa": [],
              "fingerprint_sha256": "2e7867c83b9ac9557266e03e4f1021a318ef0de59c81c3989d813c4245a0c421",
              "key_algorithm": "RSA",
              "rsa": {
                "exponent": 65537,
                "length": 2048,
                "modulus": "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"
              }
            },
            "tbs_fingerprint": "73898739663462073af0281e5e027d5ec73fb9517f4510b34381f23244602678",
            "validation_level": "DV",
            "validity": {
              "length_seconds": 283996800,
              "not_after": "2029-07-16T14:53:40",
              "not_before": "2020-07-16T14:53:40"
            },
            "version": 2
          },
          "fingerprint_sha256": "78616C96EA05AAF227F0AEBD8ABE26871DE24001946E94414C8C95D26C99E06A",
          "precert": false,
          "raw": "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",
          "tags": [
            "dv",
            "trusted"
          ]
        }
      },
      "cve": [
        {
          "id": "CVE-1999-0070",
          "score": 5,
          "severity": "medium"
        },
        {
          "id": "CVE-1999-1199",
          "score": 10,
          "severity": "high"
        },
        {
          "id": "CVE-2023-25690",
          "score": 9.8,
          "severity": "critical"
        }
      ],
      "url": "https://78.189.31.27/",
      "_meta": {
        "name": "",
        "desc": "",
        "category": ""
      },
      "last_updated_at": "2025-10-31T00:48:30.712Z"
    }
  ],
  "services_hash": "ad832c521f4c061df96610e0f362b72f9517c20d1b1de2c49cb9a102de6c8f22",
  "last_updated_at": "2025-10-31T00:48:30.712Z",
  "banner": [
    "http",
    "tls"
  ],
  "is_vuln": true,
  "cveDetails": {
    "CVE-1999-0070": {
      "id": "CVE-1999-0070",
      "references": [
        "https://lists.apache.org/thread.html/rc5d27fc1e76dc5650e1a3f1db1de403120f4c2d041cb7352850455c2%40%3Cusers.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/rc5d27fc1e76dc5650e1a3f1db1de403120f4c2d041cb7352850455c2%40%3Cusers.httpd.apache.org%3E"
      ],
      "score": 5,
      "services": [
        "443/http"
      ],
      "severity": "medium",
      "summary": "test-cgi program allows an attacker to list files on the server.",
      "vector_string": "AV:N/AC:L/Au:N/C:N/I:P/A:N",
      "weakness": "NVD-CWE-noinfo"
    },
    "CVE-1999-1199": {
      "id": "CVE-1999-1199",
      "references": [
        "http://marc.info/?l=bugtraq&m=90252779826784&w=2",
        "http://marc.info/?l=bugtraq&m=90276683825862&w=2",
        "http://marc.info/?l=bugtraq&m=90280517007869&w=2",
        "http://marc.info/?l=bugtraq&m=90286768232093&w=2",
        "http://www.redhat.com/support/errata/rh51-errata-general.html#apache",
        "https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E",
        "http://marc.info/?l=bugtraq&m=90252779826784&w=2",
        "http://marc.info/?l=bugtraq&m=90276683825862&w=2",
        "http://marc.info/?l=bugtraq&m=90280517007869&w=2",
        "http://marc.info/?l=bugtraq&m=90286768232093&w=2",
        "http://www.redhat.com/support/errata/rh51-errata-general.html#apache",
        "https://lists.apache.org/thread.html/r5419c9ba0951ef73a655362403d12bb8d10fab38274deb3f005816f5%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/r9f93cf6dde308d42a9c807784e8102600d0397f5f834890708bf6920%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/rf2f0f3611f937cf6cfb3b4fe4a67f69885855126110e1e3f2fb2728e%40%3Ccvs.httpd.apache.org%3E",
        "https://lists.apache.org/thread.html/rf6449464fd8b7437704c55f88361b66f12d5b5f90bcce66af4be4ba9%40%3Ccvs.httpd.apache.org%3E"
      ],
      "score": 10,
      "services": [
        "443/http"
      ],
      "severity": "high",
      "summary": "Apache WWW server 1.3.1 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via a large number of MIME headers with the same name, aka the \"sioux\" vulnerability.",
      "vector_string": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
      "weakness": "NVD-CWE-Other"
    },
    "CVE-2023-25690": {
      "id": "CVE-2023-25690",
      "references": [
        "http://packetstormsecurity.com/files/176334/Apache-2.4.55-mod_proxy-HTTP-Request-Smuggling.html",
        "https://httpd.apache.org/security/vulnerabilities_24.html",
        "https://lists.debian.org/debian-lts-announce/2023/04/msg00028.html",
        "https://security.gentoo.org/glsa/202309-01",
        "http://packetstormsecurity.com/files/176334/Apache-2.4.55-mod_proxy-HTTP-Request-Smuggling.html",
        "https://httpd.apache.org/security/vulnerabilities_24.html",
        "https://lists.debian.org/debian-lts-announce/2023/04/msg00028.html",
        "https://security.gentoo.org/glsa/202309-01"
      ],
      "score": 9.8,
      "services": [
        "443/http"
      ],
      "severity": "critical",
      "summary": "Some mod_proxy configurations on Apache HTTP Server versions 2.4.0 through 2.4.55 allow a HTTP Request Smuggling attack.\n\n\n\n\nConfigurations are affected when mod_proxy is enabled along with some form of RewriteRule\n or ProxyPassMatch in which a non-specific pattern matches\n some portion of the user-supplied request-target (URL) data and is then\n re-inserted into the proxied request-target using variable \nsubstitution. For example, something like:\n\n\n\n\nRewriteEngine on\nRewriteRule \"^/here/(.*)\" \"http://example.com:8080/elsewhere?$1\"; [P]\nProxyPassReverse /here/ http://example.com:8080/\n\n\nRequest splitting/smuggling could result in bypass of access controls in the proxy server, proxying unintended URLs to existing origin servers, and cache poisoning. Users are recommended to update to at least version 2.4.56 of Apache HTTP Server.",
      "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "weakness": "CWE-444"
    },
    "CVE-2023-27522": {
      "id": "CVE-2023-27522",
      "references": [
        "https://httpd.apache.org/security/vulnerabilities_24.html",
        "https://lists.debian.org/debian-lts-announce/2023/04/msg00028.html",
        "https://security.gentoo.org/glsa/202309-01"
      ],
      "score": 7.5,
      "services": [
        "443/http"
      ],
      "severity": "high",
      "summary": "HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55.nnSpecial characters in the origin response header can truncate/split the response forwarded to the client.nnn",
      "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
      "weakness": "CWE-444"
    }
  }
}