Merge branch 'main' of github.com:PucelaBits/websegura into main

This commit is contained in:
nukeador 2021-01-28 11:57:38 +01:00
commit 8ce4906e45
14 changed files with 390 additions and 0 deletions

View File

@ -0,0 +1,30 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:42:00 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "no-store, no-cache, must-revalidate, post-check=0, pre-check=0",
"Connection": "keep-alive",
"Content-Encoding": "gzip",
"Content-Length": "26079",
"Content-Type": "text/html; charset=UTF-8",
"Date": "Thu, 28 Jan 2021 10:41:55 GMT",
"Expires": "Thu, 19 Nov 1981 08:52:00 GMT",
"Pragma": "no-cache",
"Server": "Apache",
"Set-Cookie": "acceda_default=qph3danc23d2s4e3phs1oivfj4; path=/; secure; HttpOnly",
"Strict-Transport-Security": "max-age=31536000; includeSubDomains, max-age=500; includeSubDomains",
"Vary": "Accept-Encoding",
"X-Frame-Options": "SAMEORIGIN, SAMEORIGIN"
},
"scan_id": 17481785,
"score": 20,
"start_time": "Thu, 28 Jan 2021 10:41:49 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 5,
"tests_passed": 7,
"tests_quantity": 12
}

View File

@ -0,0 +1,37 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:59 GMT",
"grade": "D-",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "public, max-age=3600",
"Connection": "Keep-Alive",
"Content-Encoding": "gzip",
"Content-Language": "es",
"Content-Type": "text/html; charset=utf-8",
"Date": "Thu, 28 Jan 2021 10:42:09 GMT",
"Expires": "Sun, 19 Nov 1978 05:00:00 GMT",
"Keep-Alive": "timeout=15, max=100",
"Last-Modified": "Thu, 28 Jan 2021 09:51:04 GMT",
"Link": "<https://www.vacunacovid.gob.es/>; rel=\"canonical\",<https://www.vacunacovid.gob.es/>; rel=\"shortlink\"",
"Referrer-Policy": "no-referrer",
"Server": "lighttpd/1.4.19",
"Set-Cookie": "ROUTEID=.vacunacovid2; Path=/; Secure; HttpOnly",
"Strict-Transport-Security": "max-age=31536000; includeSubDomains; preload, max-age=31536000; includeSubDomains; preload",
"Transfer-Encoding": "chunked",
"Vary": "Cookie,Accept-Encoding",
"X-Content-Type-Options": "nosniff",
"X-Drupal-Cache": "HIT",
"X-Frame-Options": "SAMEORIGIN, SAMEORIGIN",
"X-XSS-Protection": "1; mode=block"
},
"scan_id": 17481779,
"score": 25,
"start_time": "Thu, 28 Jan 2021 10:41:46 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 5,
"tests_passed": 7,
"tests_quantity": 12
}

View File

@ -0,0 +1,30 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:54 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Accept-Ranges": "bytes",
"Access-Control-Allow-Credentials": "true",
"Access-Control-Allow-Headers": "Content-Type",
"Cache-Control": "max-age=3",
"Connection": "Keep-Alive",
"Content-Length": "36725",
"Content-Type": "text/html",
"Date": "Thu, 28 Jan 2021 10:41:51 GMT",
"ETag": "\"8f75-5b9e0d757e252\"",
"Expires": "Thu, 28 Jan 2021 10:41:54 GMT",
"Keep-Alive": "timeout=20, max=200",
"Last-Modified": "Wed, 27 Jan 2021 12:23:40 GMT",
"Server": "Apache"
},
"scan_id": 17481781,
"score": 20,
"start_time": "Thu, 28 Jan 2021 10:41:47 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 5,
"tests_passed": 7,
"tests_quantity": 12
}

View File

@ -0,0 +1,37 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:57 GMT",
"grade": "C",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "no-store, no-cache, must-revalidate, post-check=0, pre-check=0",
"Connection": "Keep-Alive",
"Content-Encoding": "gzip",
"Content-Type": "text/html; charset=utf-8",
"Date": "Thu, 28 Jan 2021 10:41:52 GMT",
"Expires": "Wed, 17 Aug 2005 00:00:00 GMT",
"Keep-Alive": "timeout=15, max=60",
"Last-Modified": "Thu, 28 Jan 2021 10:41:53 GMT",
"P3P": "CP=\"NOI ADM DEV PSAi COM NAV OUR OTRo STP IND DEM\"",
"Pragma": "no-cache",
"Server": "Apache",
"Set-Cookie": "ff2850209f5e40085fb78ce3df7d39da=8le7r446hpc2gsv26stp8cna64; path=/; HttpOnly;Secure;httponly;, STID=1G4GMWx3; expires=Mon, 01-Feb-2021 00:00:00 GMT; Max-Age=307087; path=/; secure;Secure;httponly;, visid_incap_1560598=LHEeuEH9RCCSd/WaBYpjH++UEmAAAAAAQUIPAAAAAABh0JWTJAUXHf2cDVQChLsj; expires=Thu, 27 Jan 2022 11:49:38 GMT; HttpOnly; path=/; Domain=.ccn-cert.cni.es, incap_ses_543_1560598=rHniJLTajXE3CtFY7B+JB/GUEmAAAAAAu7pVhTVC13UjOxL0yZWmXg==; path=/; Domain=.ccn-cert.cni.es",
"Strict-Transport-Security": "max-age=31536000; includeSubDomains",
"Transfer-Encoding": "chunked",
"Vary": "Accept-Encoding",
"X-CDN": "Incapsula",
"X-Content-Type-Options": "nosniff",
"X-Frame-Options": "SAMEORIGIN, SAMEORIGIN",
"X-Iinfo": "3-28572069-28572070 NNNN CT(151 152 0) RT(1611830512227 43) q(0 0 3 0) r(8 8) U12",
"X-XSS-Protection": "1; mode=block"
},
"scan_id": 17481786,
"score": 50,
"start_time": "Thu, 28 Jan 2021 10:41:50 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 3,
"tests_passed": 9,
"tests_quantity": 12
}

View File

@ -0,0 +1,31 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:54 GMT",
"grade": "C",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "no-cache,no-store,max-age=0",
"Connection": "keep-alive",
"Content-Encoding": "gzip",
"Content-Length": "2645",
"Content-Type": "text/html;charset=UTF-8",
"Date": "Thu, 28 Jan 2021 10:41:51 GMT",
"Expires": "Thu, 01 Jan 1970 00:00:00 GMT",
"Last-Modified": "Sat, 16 Jan 2021 19:44:53 GMT",
"Server": "Unknown",
"Strict-Transport-Security": "max-age=31536000; includeSubDomains; preload",
"Vary": "Accept-Encoding",
"X-Content-Type-Options": "nosniff",
"X-Frame-Options": "SAMEORIGIN, SAMEORIGIN",
"X-XSS-Protection": "1; mode=block"
},
"scan_id": 17481784,
"score": 55,
"start_time": "Thu, 28 Jan 2021 10:41:49 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 2,
"tests_passed": 10,
"tests_quantity": 12
}

View File

@ -0,0 +1,32 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:42:00 GMT",
"grade": "D-",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Accept-Ranges": "bytes",
"Connection": "Keep-Alive",
"Content-Encoding": "gzip",
"Content-Length": "11517",
"Content-Type": "text/html",
"Date": "Thu, 28 Jan 2021 10:41:55 GMT",
"ETag": "\"10666-5b9f230d8c5ed-gzip\"",
"Keep-Alive": "timeout=10, max=100",
"Last-Modified": "Thu, 28 Jan 2021 09:05:36 GMT",
"Server": "Apache",
"Strict-Transport-Security": "max-age=15553000",
"Vary": "Accept-Encoding",
"X-Content-Type-Options": "nosniff",
"X-Frame-Options": "SAMEORIGIN",
"X-XSS-Protection": "1; mode=block"
},
"scan_id": 17481787,
"score": 25,
"start_time": "Thu, 28 Jan 2021 10:41:50 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 2,
"tests_passed": 10,
"tests_quantity": 12
}

View File

@ -0,0 +1,25 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:51 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Connection": "keep-alive",
"Content-Encoding": "gzip",
"Content-Length": "6334",
"Content-Type": "text/html;charset=UTF-8",
"Date": "Thu, 28 Jan 2021 10:41:49 GMT",
"Last-Modified": "Thu, 28 Jan 2021 10:22:11 GMT",
"Vary": "Accept-Encoding",
"X-Cnection": "close"
},
"scan_id": 17481778,
"score": 0,
"start_time": "Thu, 28 Jan 2021 10:41:46 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 6,
"tests_passed": 6,
"tests_quantity": 12
}

View File

@ -0,0 +1,39 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:57 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "private, max-age=0",
"Connection": "Keep-Alive",
"Content-Encoding": "gzip",
"Content-Length": "45943",
"Content-Type": "text/html; charset=utf-8",
"Date": "Thu, 28 Jan 2021 10:42:09 GMT",
"Expires": "Wed, 13 Jan 2021 10:42:08 GMT",
"Last-Modified": "Thu, 28 Jan 2021 10:42:08 GMT",
"MicrosoftSharePointTeamServices": "15.0.0.4599",
"SPIisLatency": "0",
"SPRequestDuration": "520",
"SPRequestGuid": "2eaca59f-3833-40a1-3986-797656c3f25a",
"Server": "Microsoft-IIS/8.0",
"Set-Cookie": "ASP.NET_SessionId=2r2bigm1nduhdp2fenm3uqo5; path=/; HttpOnly; SameSite=Lax, Cultura=es-ES; expires=Fri, 31-Dec-9999 23:59:59 GMT; path=/",
"Vary": "Accept-Encoding",
"X-AspNet-Version": "4.0.30319",
"X-Content-Type-Options": "nosniff",
"X-FRAME-OPTIONS": "SAMEORIGIN",
"X-MS-InvokeApp": "1; RequireReadOnly",
"X-Powered-By": "ASP.NET",
"X-SharePointHealthScore": "0",
"request-id": "2eaca59f-3833-40a1-3986-797656c3f25a"
},
"scan_id": 17481780,
"score": 5,
"start_time": "Thu, 28 Jan 2021 10:41:47 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 4,
"tests_passed": 8,
"tests_quantity": 12
}

View File

@ -0,0 +1,27 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:59 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "max-age=300",
"Connection": "keep-alive",
"Content-Encoding": "deflate",
"Content-Type": "text/html;charset=UTF-8",
"Date": "Thu, 28 Jan 2021 10:41:50 GMT",
"ETag": "19",
"Expires": "Thu, 28 Jan 2021 10:46:50 GMT",
"Liferay-Portal": "Liferay Portal Community Edition 6.1.1 CE GA2 (Paton / Build 6101 / July 31, 2012)",
"Server": "Apache-Coyote/1.1",
"Transfer-Encoding": "chunked"
},
"scan_id": 17481783,
"score": 0,
"start_time": "Thu, 28 Jan 2021 10:41:49 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 7,
"tests_passed": 5,
"tests_quantity": 12
}

View File

@ -0,0 +1,34 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 01:03:44 GMT",
"grade": "C+",
"hidden": true,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-Control": "no-store, no-cache, must-revalidate",
"Connection": "Keep-Alive",
"Content-Encoding": "gzip",
"Content-Length": "11126",
"Content-Security-Policy": "default-src 'self' *.policia.es;\tscript-src 'self' 'unsafe-eval' 'unsafe-inline' *.policia.es *.twitter.com *.twimg.com;\tobject-src 'self' *.policia.es;\tfont-src 'self' 'unsafe-inline' data: *.googleapis.com *.policia.es *.twitter.com *.twimg.com;\tstyle-src 'self' 'unsafe-inline' data: *.googleapis.com *.policia.es *.twitter.com *.twimg.com;\tmedia-src 'self' *.policia.es *.twitter.com *.twimg.com;\tframe-src 'self' *.policia.es *.redsara.es *.twitter.com *.twimg.com;\timg-src 'self' *.policia.es *.twitter.com *.twimg.com data:;",
"Content-Type": "text/html; charset=UTF-8",
"Date": "Thu, 28 Jan 2021 01:03:39 GMT",
"Expires": "Thu, 19 Nov 1981 08:52:00 GMT",
"Keep-Alive": "timeout=5, max=99",
"Pragma": "no-cache",
"Server": "Apache",
"Set-Cookie": "PHPSESSID=p0m6c2frh7enqbqurod7pi18jb; path=/; HttpOnly",
"Strict-Transport-Security": "max-age=15552000",
"Vary": "Accept-Encoding,User-Agent",
"X-Content-Type-Options": "nosniff",
"X-Frame-Options": "deny",
"X-XSS-Protection": "1 mode = block"
},
"scan_id": 17476637,
"score": 60,
"start_time": "Thu, 28 Jan 2021 01:03:35 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 3,
"tests_passed": 9,
"tests_quantity": 12
}

View File

@ -0,0 +1,31 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 01:00:37 GMT",
"grade": "F",
"hidden": true,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Accept-Ranges": "bytes",
"Connection": "keep-alive",
"Content-Encoding": "gzip",
"Content-Length": "11141",
"Content-Type": "text/html;charset=utf-8",
"Date": "Thu, 28 Jan 2021 01:00:36 GMT",
"ETag": "\"11d6f-5b9e5e9764323-gzip\"",
"Last-Modified": "Wed, 27 Jan 2021 18:26:39 GMT",
"Server": "Apache",
"Vary": "Accept-Encoding",
"X-Content-Type-Options": "nosniff",
"X-Dispatcher": "dispatcher2westeurope",
"X-Frame-Options": "SAMEORIGIN",
"X-Vhost": "publish"
},
"scan_id": 17476614,
"score": 0,
"start_time": "Thu, 28 Jan 2021 01:00:33 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 5,
"tests_passed": 7,
"tests_quantity": 12
}

View File

@ -0,0 +1,29 @@
{
"algorithm_version": 2,
"end_time": "Thu, 28 Jan 2021 10:41:57 GMT",
"grade": "F",
"hidden": false,
"likelihood_indicator": "MEDIUM",
"response_headers": {
"Cache-control": "no-cache, no-store, must-revalidate, max-age=0",
"Content-encoding": "gzip",
"Content-length": "7668",
"Content-type": "text/html;charset=UTF-8",
"Date": "Thu, 28 Jan 2021 10:41:53 GMT",
"Expires": "Thu, 01 Jan 1970 00:00:00 GMT",
"Last-modified": "Thu, 28 Jan 2021 08:33:54 GMT",
"Pragma": "no-cache",
"Server": "Servidor Web 1.0",
"Set-cookie": "JSESSIONID=EA610DA5B40E2F329276ACBDBF059675.prointera; Path=/; Secure; HttpOnly",
"Vary": "Accept-Encoding",
"X-magnolia-registration": "Registered"
},
"scan_id": 17481782,
"score": 0,
"start_time": "Thu, 28 Jan 2021 10:41:48 GMT",
"state": "FINISHED",
"status_code": 200,
"tests_failed": 6,
"tests_passed": 6,
"tests_quantity": 12
}

View File

@ -0,0 +1,4 @@
{
"error": "invalid-hostname",
"text": "www12.agenciatributaria.es is an invalid hostname"
}

View File

@ -0,0 +1,4 @@
{
"error": "invalid-hostname",
"text": "www2.agenciatributaria.es is an invalid hostname"
}