Host

104.255.192.239

Tags: Hosting

As of our latest check on 2026-08-28, 104.255.192.239 (A2 Hosting, Inc., AS55293, United States) had 5 open ports (21, 22, 25, 80, 443) and 19 known CVEs.

Known CVEs on this host

5open ports
0names pointing here
19known CVEs
0known exploited

Open ports and CVEs as of our latest check of this host, 2026-08-28.

CVEs by severity: CRITICAL 3 HIGH 10 MEDIUM 5 LOW 1

A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list

Not counted: 28 on a distribution build — the fix may be backported (openssh 8.0). See them

Not counted: 1 only affects another platform (php 5.6.40). See them

Network
A2 Hosting, Inc. AS55293
Open ports
21, 22, 25, 80, 443 · at our latest check, 2026-08-28
Location
United States US
Hostname
104.255.192.239.static.a2webhosting.com · reverse DNS, checked 2026-10-05
Route
104.255.192.0/21 · announced by A2 Hosting, Inc. AS55293 RPKI valid
Organisation
hosting.com · Content / hosting
Registry network
INTERNET-BLK-A2HOS-9 · 104.255.192.0 - 104.255.199.255 · A2 Hosting, Inc. · ARIN
First seen
2026-08-27 22:50 UTC
Last seen alive
2026-08-28 06:22 UTC
Hosted domains
No host name points here

Reputation

Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.

Services (5)

21/tcp FTP first 2026-08-27 · last 2026-08-28
Banner
220---------- Welcome to Pure-FTPd [privsep] [TLS] ---------- 220-You are user number 12 of 80 allowed. 220-Local time is now 02:22. Server port: 21. 220-This is a private system - No anonymous log
Raw response
220---------- Welcome to Pure-FTPd [privsep] [TLS] ----------
220-You are user number 12 of 80 allowed.
220-Local time is now 02:21. Server port: 21.
220-This is a private system - No anonymous login
220-IPv6 connections are also welcome on this server.
220 You will be disconnected after 15 minutes of inactivity.
22/tcp SSH OpenSSH_8.0 first 2026-08-27 · last 2026-08-28
Server
SSH-2.0-OpenSSH_8.0
Host key
ssh-ed25519 72d5ed62438cb3a2…
Raw response
SSH-2.0-OpenSSH_8.0
25/tcp SMTP exim 4.99.5 4 CVEs first 2026-08-27 · last 2026-08-28
Banner
451-The server has reached its limit for processing requests from your host. 451 Please try again later.
Raw response
220-mi3-ss101.a2hosting.com ESMTP Exim 4.99.5 #2 Fri, 28 Aug 2026 02:21:15 -0400 
220-We do not authorize the use of this system to transport unsolicited, 
220 and/or bulk e-mail.
80/tcp HTTP LiteSpeed 15 CVEs first 2026-08-27 · last 2026-08-28
Status
301 Moved Permanently
Server
LiteSpeed
Powered by
PHP/5.6.40
Raw response
HTTP/1.1 301 Moved Permanently
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
X-Powered-By: PHP/5.6.40
set-cookie: PHPSESSID=upsmbp075ih4j946skvoequ683; path=/
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Content-Type: text/html; charset=UTF-8
X-Pingback: http://www.west-branch.k12.ia.us/xmlrpc.php
Location: http://www.west-branch.k12.ia.us/
Content-Length: 0
Date: Fri, 28 Aug 2026 06:21:16 GMT
Server: LiteSpeed
Strict-Transport-Security: max-age=63072000; includeSubDomains
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
443/tcp HTTP LiteSpeed first 2026-08-27 · last 2026-08-28
Status
403 Forbidden
Title
403 Forbidden
Server
LiteSpeed
Raw response
HTTP/1.0 301 Moved Permanently
Location: https://104.255.192.239/
Cache-Control: private, no-cache, max-age=0
Pragma: no-cache
Server:LiteSpeed
Content-Length: 0
Connection: Close

Vulnerabilities

Distribution build — the fix may be backported (28)

These CVEs were matched on software built by an operating-system distribution whose package revision the service does not show. Distributions often fix a flaw without changing the upstream version number, so whether this build is affected cannot be told from its version. They are not counted.

CVEs by severity: CRITICAL 1 HIGH 7 MEDIUM 13 LOW 7

CVESoftware
CVE-2023-38408 CRITICAL 9.8 openssh 8.0 · port 22
CVE-2026-35385 HIGH 8.1 openssh 8.0 · port 22
CVE-2026-35414 HIGH 8.1 openssh 8.0 · port 22
CVE-2019-16905 HIGH 7.8 openssh 8.0 · port 22
CVE-2026-60002 HIGH 7.7 openssh 8.0 · port 22
CVE-2026-60000 HIGH 7.5 openssh 8.0 · port 22
CVE-2020-15778 HIGH 7.4 openssh 8.0 · port 22
CVE-2021-41617 HIGH 7.0 openssh 8.0 · port 22
CVE-2025-26465 MEDIUM 6.8 openssh 8.0 · port 22
CVE-2023-51385 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-35387 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-59998 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2026-60001 MEDIUM 6.5 openssh 8.0 · port 22
CVE-2020-14145 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2023-48795 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2026-59999 MEDIUM 5.9 openssh 8.0 · port 22
CVE-2026-59995 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2026-59996 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2026-59997 MEDIUM 5.4 openssh 8.0 · port 22
CVE-2016-20012 MEDIUM 5.3 openssh 8.0 · port 22
CVE-2026-73282 MEDIUM 4.8 openssh 8.0 · port 22
CVE-2025-32728 LOW 3.8 openssh 8.0 · port 22
CVE-2021-36368 LOW 3.7 openssh 8.0 · port 22
CVE-2025-61984 LOW 3.6 openssh 8.0 · port 22
CVE-2025-61985 LOW 3.6 openssh 8.0 · port 22
CVE-2026-73281 LOW 3.5 openssh 8.0 · port 22
CVE-2026-35388 LOW 2.5 openssh 8.0 · port 22
CVE-2026-73283 LOW 2.5 openssh 8.0 · port 22
Only affects another platform (1)

These CVEs need a platform this host visibly does not run (for example a flaw of the Windows build on a Linux host). They are not counted.

CVEs by severity: CRITICAL 1

CVESoftware
CVE-2024-3566 CRITICAL 9.8 php 5.6.40 · port 80

Port history

Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.