Reporte de vulnerabilidades

URL: http://ciaa.upn.edu.pe/  ·  CMS: wordpress  ·  Generado: 2026-06-11 22:24:11  ·  ID: aba7215a8733
32
Total hallazgos
0
Crítico
0
Alto
5
Medio
5
Bajo
16
Info

Nuclei CVEs y templates (14)

SeveridadHallazgo
low [wordpress-debug-log] [http] [low] https://ciaa.upn.edu.pe/wp-content/debug.log ["714585 bytes"] [paths="wp-content"]
info [waf-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/
info [wordpress-rdf-user-enum] [http] [info] https://ciaa.upn.edu.pe/feed/rdf/ ["upn_admin"]
info [aws-detect:aws-alb] [http] [info] https://ciaa.upn.edu.pe/
info [fingerprinthub-web-fingerprints:drupal] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:youtube] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:w3-total-cache] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:cloudflare] [http] [info] https://ciaa.upn.edu.pe/
info [wordpress-plugin-detect:translatepress-multilingual] [http] [info] https://ciaa.upn.edu.pe/
info [wordpress-plugin-detect:prevent-xss-vulnerability] [http] [info] https://ciaa.upn.edu.pe/
info [tech-detect:cloudflare] [http] [info] http://ciaa.upn.edu.pe/
info [wordpress-passive-detection:plugin_slug] [http] [info] https://ciaa.upn.edu.pe/ ["prevent-xss-vulnerability","translatepress-multilingual"]
info [wordpress-passive-detection:theme_slug] [http] [info] https://ciaa.upn.edu.pe/ ["ciaaupn"]
info [wordpress-detect:version_by_js] [http] [info] https://ciaa.upn.edu.pe/ ["6.7.1"]

Retire.js Librerías JS vulnerables (0)

Sin librerías JS vulnerables detectadas.

Nikto Servidor web (6)

#Hallazgo
1 + GET /: Uncommon header 'cf-ray' found, with contents: a0a3fdbc8bc96d5b-MIA
2 + GET /: Uncommon header 'x-frame-options' found, with contents: SAMEORIGIN
3 + GET /: Uncommon header 'referrer-policy' found, with contents: same-origin
4 + GET /: IP address found in the 'report-to' header. The IP is "1.0.1.1".
5 + GET /: IP address found in the 'content-security-policy-report-only' header. The IP is "1.0.1.1".
6 + GET /: Uncommon header 'report-to' found, with contents: {"group":"cf-csp-endpoint","max_age":86400,"endpoints":[{"url":"https://csp-reporting.cloudflare.com/cdn-cgi/script_monitor/report?m=LWaEbqEi.9lvm7zbGKT0MQ3186t12duQdL0LxpUK3zE-1781216303.4198873-1.0.1.1-VodH63l5CrB7j6D9wCK1UZpczw.PiHHQyjM7FjmyffDVTuELfJd6m7pqS7xJHHBaOcTEGuxCF78jXO3JK_5EGHf_msL7KB8lO7TeGyQrwHtOdj8UBuLmSPklGsMbqAKs8RveInKLmRjFvCVLoKQtL4rddfJ7ym7WhFitmZKRK.0"}]}

WPScan WordPress (0)

Sin vulnerabilidades de WPScan.

OWASP ZAP Active scan (12)

RiesgoAlertaURL afectada
Medium (High) CSP: Failure to Define Directive with No Fallback http://ciaa.upn.edu.pe/
Medium (High) CSP: script-src unsafe-eval http://ciaa.upn.edu.pe/
Medium (High) CSP: script-src unsafe-inline http://ciaa.upn.edu.pe/
Medium (High) CSP: style-src unsafe-inline http://ciaa.upn.edu.pe/
Medium (High) Sub Resource Integrity Attribute Missing http://ciaa.upn.edu.pe/
Low (High) CSP: Notices http://ciaa.upn.edu.pe/
Low (Medium) Cookie No HttpOnly Flag http://ciaa.upn.edu.pe/
Low (Medium) Cookie with SameSite Attribute None http://ciaa.upn.edu.pe/
Low (Medium) Cookie without SameSite Attribute http://ciaa.upn.edu.pe/
Informational (Medium) Information Disclosure - Suspicious Comments http://ciaa.upn.edu.pe/
Informational (Medium) Modern Web Application http://ciaa.upn.edu.pe/
Informational (Medium) Session Management Response Identified http://ciaa.upn.edu.pe/