Host

104.255.192.152

Tags: Hosting

As of our latest check on 2026-08-27, 104.255.192.152 (A2 Hosting, Inc., AS55293, United States) had 4 open ports (21, 22, 80, 443) and 2 known CVEs.

Known CVEs on this host

4open ports
0names pointing here
2known CVEs
0known exploited

Open ports and CVEs as of our latest check of this host, 2026-08-27.

CVEs by severity: MEDIUM 2

A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list

Not counted: 39 on a distribution build — the fix may be backported (openssh 8.0). See them

Not counted: 1 only affects another platform (php 7.4.33). See them

Network
A2 Hosting, Inc. AS55293
Open ports
21, 22, 80, 443 · at our latest check, 2026-08-27
Location
United States US
Hostname
104.255.192.152.static.a2webhosting.com · reverse DNS, checked 2026-10-04
Route
104.255.192.0/21 · announced by A2 Hosting, Inc. AS55293 RPKI valid
Organisation
hosting.com · Content / hosting
Registry network
INTERNET-BLK-A2HOS-9 · 104.255.192.0 - 104.255.199.255 · A2 Hosting, Inc. · ARIN
First seen
2026-08-27 22:50 UTC
Last seen alive
2026-08-27 22:52 UTC
Hosted domains
No host name points here

Reputation

Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.

Services (4)

21/tcp FTP first 2026-08-27 · last 2026-08-27
Banner
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 19 of 80 allowed. 220-Local time is now 18:52. Server port: 21. 220-This is a private system - No anonymous log
Raw response
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 12 of 80 allowed.
220-Local time is now 18:51. Server port: 21.
220-This is a private system - No anonymous login
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.
22/tcp SSH OpenSSH_8.0 first 2026-08-27 · last 2026-08-27
Server
SSH-2.0-OpenSSH_8.0
Host key
ssh-ed25519 72d5ed62438cb3a2…
Raw response
SSH-2.0-OpenSSH_8.0
80/tcp HTTP LiteSpeed 2 CVEs first 2026-08-27 · last 2026-08-27
Status
302 Found
Title
Redirecting to http://104.255.192.152/login
Server
LiteSpeed
Powered by
PHP/7.4.33
Raw response
HTTP/1.1 302 Found
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
X-Powered-By: PHP/7.4.33
Cache-Control: no-cache, no-store, must-revalidate, max-age=0
Location: http://104.255.192.152/login
Content-Type: text/html; charset=UTF-8
set-cookie: XSRF-TOKEN=eyJpdiI6IkRiUXJsaTRRVGNkU1kwcHFOV0FQWVE9PSIsInZhbHVlIjoiaGMxRHcvK1VsWno0MFRwUXk1eHRyTVVHZkxsOU9STmFSdzd3cGJ6dXhQaTdSbUdjVzVORU4yWi9xSExUeEhaelFIelZBamVMTGp5RlhyTngxS0QydUEwVW9yd0RlZVBxZW1KUFdmWThmNDVib2xGd0hBWHUzeEhyWEVmQkcxekciLCJtYWMiOiI1NmE5OWFmNjI2N2ZmYjQwOTc1MzdiNDczMjQ4NWJkNTdmYzc2MDczZTY4NGJjOWFjY2UyZjY2MjAyZWUxNDIwIiwidGFnIjoiIn0%3D; expires=Fri, 28-Aug-2026 00:51:23 GMT; Max-Age=7200; path=/; samesite=lax
set-cookie: dash_session=eyJpdiI6ImRjMTFWRzU3UG9Rb2FvY0ZVa0p0MXc9PSIsInZhbHVlIjoiVUxiSlZ1a1drVUFsaTdjYStqRkhtUlVDOERlelFDVUlvSy9TLytuYlRNWGZsYkxybG4vSE9rNzJuTEJIUyt4TTgzbVE1blJXMmJISDhPNk82dFVVSzBBakNodDVkTUJDdno2Tzk4ZzJ0L0N6Wkh1bXpZVUNNa254OEVNQ2FlTDgiLCJtYWMiOiJiMTY0MDg2ODI1NTcyZj
443/tcp HTTP LiteSpeed first 2026-08-27 · last 2026-08-27
Status
302 Found
Title
Redirecting to https://104.255.192.152/login
Server
LiteSpeed
Powered by
PHP/7.4.33
Raw response
HTTP/1.0 301 Moved Permanently
Location: https://104.255.192.152/
Cache-Control: private, no-cache, max-age=0
Pragma: no-cache
Server:LiteSpeed
Content-Length: 0
Connection: Close

Vulnerabilities

Distribution build — the fix may be backported (39)

These CVEs were matched on software built by an operating-system distribution whose package revision the service does not show. Distributions often fix a flaw without changing the upstream version number, so whether this build is affected cannot be told from its version. They are not counted.

CVEs by severity: CRITICAL 1 HIGH 7 MEDIUM 15 LOW 16

CVESoftware
CVE-2023-38408 CRITICAL 9.8 openssh 8.0 · port 22
CVE-2026-35385 HIGH 8.1 openssh 8.0 · port 22
CVE-2026-35414 HIGH 8.1 openssh 8.0 · port 22
CVE-2019-16905 HIGH 7.8 openssh 8.0 · port 22
CVE-2026-60002 HIGH 7.7 openssh 8.0 · port 22
CVE-2026-60000 HIGH 7.5 openssh 8.0 · port 22
CVE-2020-15778 HIGH 7.4 openssh 8.0 · port 22
CVE-2021-41617 HIGH 7.0 openssh 8.0 · port 22
CVE-2025-26465 MEDIUM 6.8 openssh 8.0 · port 22
CVE-2023-51385 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-106585 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-35387 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-59998 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-60001 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2020-14145 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2023-48795 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2026-59999 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2026-59995 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2026-59996 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2026-59997 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2016-20012 MEDIUM 5.3 openssh 8.0 · port 22
CVE-2026-73282 MEDIUM 4.8 openssh 8.0 · port 22
CVE-2026-106552 MEDIUM 4.2 openssh 8.0 · port 22
CVE-2025-32728 LOW 3.8 openssh 8.0 · port 22
CVE-2021-36368 LOW 3.7 openssh 8.0 · port 22
CVE-2026-106582 LOW 3.7 openssh 8.0 · port 22
CVE-2025-61984 LOW 3.6 openssh 8.0 · port 22
CVE-2025-61985 LOW 3.6 openssh 8.0 · port 22
CVE-2026-106587 LOW 3.6 openssh 8.0 · port 22
CVE-2026-73281 LOW 3.5 openssh 8.0 · port 22
CVE-2026-106588 LOW 3.1 openssh 8.0 · port 22
CVE-2026-106589 LOW 2.9 openssh 8.0 · port 22
CVE-2026-106583 LOW 2.5 openssh 8.0 · port 22
CVE-2026-106584 LOW 2.5 openssh 8.0 · port 22
CVE-2026-106586 LOW 2.5 openssh 8.0 · port 22
CVE-2026-35388 LOW 2.5 openssh 8.0 · port 22
CVE-2026-73283 LOW 2.5 openssh 8.0 · port 22
CVE-2026-106553 LOW 2.2 openssh 8.0 · port 22
CVE-2026-106555 LOW 2.2 openssh 8.0 · port 22
Only affects another platform (1)

These CVEs need a platform this host visibly does not run (for example a flaw of the Windows build on a Linux host). They are not counted.

CVEs by severity: CRITICAL 1

CVESoftware
CVE-2024-3566 CRITICAL 9.8 php 7.4.33 · port 80

Port history

Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.