Reporte de vulnerabilidades

URL: http://ciaa.upn.edu.pe/  ·  CMS: wordpress  ·  Generado: 2026-06-11 21:27:58  ·  ID: 0a1584fc6976
32
Total hallazgos
0
Crítico
0
Alto
5
Medio
5
Bajo
16
Info

Nuclei CVEs y templates (14)

SeveridadHallazgo
low [wordpress-debug-log] [http] [low] https://ciaa.upn.edu.pe/wp-content/debug.log ["714585 bytes"] [paths="wp-content"]
info [waf-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/
info [wordpress-passive-detection:plugin_slug] [http] [info] https://ciaa.upn.edu.pe/ ["translatepress-multilingual","prevent-xss-vulnerability"]
info [wordpress-passive-detection:theme_slug] [http] [info] https://ciaa.upn.edu.pe/ ["ciaaupn"]
info [wordpress-detect:version_by_js] [http] [info] https://ciaa.upn.edu.pe/ ["6.7.1"]
info [wordpress-rdf-user-enum] [http] [info] https://ciaa.upn.edu.pe/feed/rdf/ ["upn_admin"]
info [fingerprinthub-web-fingerprints:drupal] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:youtube] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:w3-total-cache] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:cloudflare] [http] [info] https://ciaa.upn.edu.pe/
info [wordpress-plugin-detect:translatepress-multilingual] [http] [info] https://ciaa.upn.edu.pe/
info [wordpress-plugin-detect:prevent-xss-vulnerability] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/
info [aws-detect:aws-alb] [http] [info] https://ciaa.upn.edu.pe/

Retire.js Librerías JS vulnerables (0)

Sin librerías JS vulnerables detectadas.

Nikto Servidor web (6)

#Hallazgo
1 + GET /: Uncommon header 'referrer-policy' found, with contents: same-origin
2 + GET /: Uncommon header 'cf-ray' found, with contents: a0a3ab84e8b56d5b-MIA
3 + GET /: Uncommon header 'x-frame-options' found, with contents: SAMEORIGIN
4 + GET /index.htm: IP address found in the 'content-security-policy-report-only' header. The IP is "1.0.1.1".
5 + GET /index.htm: IP address found in the 'report-to' header. The IP is "1.0.1.1".
6 + GET /index.htm: Uncommon header 'content-security-policy-report-only' found, with contents: script-src 'unsafe-inline' 'unsafe-eval'; connect-src 'none'; report-uri https://csp-reporting.cloudflare.com/cdn-cgi/script_monitor/report?m=W.ooyS3qTj4o4vFz6Wr4QOYEVoyurQrwGuAs7ojkhQw-1781212935.771281-1.0.1.1-mQCkvqdtIiOH.tJ2sIBP5KDxZgD3r3p_YY8CQWIRzkcx8VXYJid6Sti0skndMdbveJ0CqUhQsDLdvq4_6FS.UxFW8L_rMvAzjk32J0H_UnxMgCwDKpgLtlllYivOpGA9e2f3KDtgUOk_.kT_4acCrbT.NFuObPJjRbSBjDaNLOc; report-to cf-csp-endpoint

WPScan WordPress (0)

Sin vulnerabilidades de WPScan.

OWASP ZAP Active scan (12)

RiesgoAlertaURL afectada
Medium (High) CSP: Failure to Define Directive with No Fallback http://ciaa.upn.edu.pe/
Medium (High) CSP: script-src unsafe-eval http://ciaa.upn.edu.pe/
Medium (High) CSP: script-src unsafe-inline http://ciaa.upn.edu.pe/
Medium (High) CSP: style-src unsafe-inline http://ciaa.upn.edu.pe/
Medium (High) Sub Resource Integrity Attribute Missing http://ciaa.upn.edu.pe/
Low (High) CSP: Notices http://ciaa.upn.edu.pe/
Low (Medium) Cookie No HttpOnly Flag http://ciaa.upn.edu.pe/
Low (Medium) Cookie with SameSite Attribute None http://ciaa.upn.edu.pe/
Low (Medium) Cookie without SameSite Attribute http://ciaa.upn.edu.pe/
Informational (Medium) Information Disclosure - Suspicious Comments http://ciaa.upn.edu.pe/
Informational (Medium) Modern Web Application http://ciaa.upn.edu.pe/
Informational (Medium) Session Management Response Identified http://ciaa.upn.edu.pe/