Reporte de vulnerabilidades
URL: http://ciaa.upn.edu.pe/ · CMS: wordpress · Generado: 2026-06-11 21:27:58 · ID: 0a1584fc6976
Nuclei CVEs y templates (14)
| Severidad | Hallazgo |
| low |
[wordpress-debug-log] [http] [low] https://ciaa.upn.edu.pe/wp-content/debug.log ["714585 bytes"] [paths="wp-content"] |
| info |
[waf-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/ |
| info |
[wordpress-passive-detection:plugin_slug] [http] [info] https://ciaa.upn.edu.pe/ ["translatepress-multilingual","prevent-xss-vulnerability"] |
| info |
[wordpress-passive-detection:theme_slug] [http] [info] https://ciaa.upn.edu.pe/ ["ciaaupn"] |
| info |
[wordpress-detect:version_by_js] [http] [info] https://ciaa.upn.edu.pe/ ["6.7.1"] |
| info |
[wordpress-rdf-user-enum] [http] [info] https://ciaa.upn.edu.pe/feed/rdf/ ["upn_admin"] |
| info |
[fingerprinthub-web-fingerprints:drupal] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[tech-detect:youtube] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[tech-detect:w3-total-cache] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[tech-detect:cloudflare] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[wordpress-plugin-detect:translatepress-multilingual] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[wordpress-plugin-detect:prevent-xss-vulnerability] [http] [info] https://ciaa.upn.edu.pe/ |
| info |
[tech-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/ |
| info |
[aws-detect:aws-alb] [http] [info] https://ciaa.upn.edu.pe/ |
Retire.js Librerías JS vulnerables (0)
Sin librerías JS vulnerables detectadas.
Nikto Servidor web (6)
| # | Hallazgo |
| 1 |
+ GET /: Uncommon header 'referrer-policy' found, with contents: same-origin |
| 2 |
+ GET /: Uncommon header 'cf-ray' found, with contents: a0a3ab84e8b56d5b-MIA |
| 3 |
+ GET /: Uncommon header 'x-frame-options' found, with contents: SAMEORIGIN |
| 4 |
+ GET /index.htm: IP address found in the 'content-security-policy-report-only' header. The IP is "1.0.1.1". |
| 5 |
+ GET /index.htm: IP address found in the 'report-to' header. The IP is "1.0.1.1". |
| 6 |
+ GET /index.htm: Uncommon header 'content-security-policy-report-only' found, with contents: script-src 'unsafe-inline' 'unsafe-eval'; connect-src 'none'; report-uri https://csp-reporting.cloudflare.com/cdn-cgi/script_monitor/report?m=W.ooyS3qTj4o4vFz6Wr4QOYEVoyurQrwGuAs7ojkhQw-1781212935.771281-1.0.1.1-mQCkvqdtIiOH.tJ2sIBP5KDxZgD3r3p_YY8CQWIRzkcx8VXYJid6Sti0skndMdbveJ0CqUhQsDLdvq4_6FS.UxFW8L_rMvAzjk32J0H_UnxMgCwDKpgLtlllYivOpGA9e2f3KDtgUOk_.kT_4acCrbT.NFuObPJjRbSBjDaNLOc; report-to cf-csp-endpoint |
WPScan WordPress (0)
Sin vulnerabilidades de WPScan.
OWASP ZAP Active scan (12)
| Riesgo | Alerta | URL afectada |
| Medium (High) |
CSP: Failure to Define Directive with No Fallback |
http://ciaa.upn.edu.pe/ |
| Medium (High) |
CSP: script-src unsafe-eval |
http://ciaa.upn.edu.pe/ |
| Medium (High) |
CSP: script-src unsafe-inline |
http://ciaa.upn.edu.pe/ |
| Medium (High) |
CSP: style-src unsafe-inline |
http://ciaa.upn.edu.pe/ |
| Medium (High) |
Sub Resource Integrity Attribute Missing |
http://ciaa.upn.edu.pe/ |
| Low (High) |
CSP: Notices |
http://ciaa.upn.edu.pe/ |
| Low (Medium) |
Cookie No HttpOnly Flag |
http://ciaa.upn.edu.pe/ |
| Low (Medium) |
Cookie with SameSite Attribute None |
http://ciaa.upn.edu.pe/ |
| Low (Medium) |
Cookie without SameSite Attribute |
http://ciaa.upn.edu.pe/ |
| Informational (Medium) |
Information Disclosure - Suspicious Comments |
http://ciaa.upn.edu.pe/ |
| Informational (Medium) |
Modern Web Application |
http://ciaa.upn.edu.pe/ |
| Informational (Medium) |
Session Management Response Identified |
http://ciaa.upn.edu.pe/ |