- Server
- SSH-2.0-OpenSSH_7.4p1 Debian-10+deb9u7
- Host key
- ssh-ed25519 5ee4620ef92ed863…
Raw response
SSH-2.0-OpenSSH_7.4p1 Debian-10+deb9u7
Host
Tags: Expired certificate
As of our latest check on 2026-05-23, 80.67.102.68 (Claranet Limited, AS8426, Spain) had 3 open ports (22, 80, 443) and 136 known CVEs, 3 known to be exploited.
Open ports and CVEs as of our latest check of this host, 2026-05-23.
CVEs by severity: CRITICAL 28 HIGH 61 MEDIUM 40 LOW 7
A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list
Not counted: 12 on a distribution build — the fix may be backported (openssh 7.4p1). See them
Not counted: 4 only affect another platform (http_server 2.4.25). See them
Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.
SSH-2.0-OpenSSH_7.4p1 Debian-10+deb9u7
HTTP/1.1 302 Found Date: Sat, 23 May 2026 10:30:13 GMT Server: Apache/2.4.25 (Univention) Location: http://80.67.102.68/univention/ Content-Length: 297 Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="http://80.67.102.68/univention/">here</a>.</p> <hr> <address>Apache/2.4.25 (Univention) Server at 80.67.102.68 Port 80</address> </body></html>
HTTP/1.1 400 Bad Request Date: Sat, 23 May 2026 10:30:13 GMT Server: Apache/2.4.25 (Univention) Content-Length: 462 Connection: close Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>400 Bad Request</title> </head><body> <h1>Bad Request</h1> <p>Your browser sent a request that this server could not understand.<br /> Reason: You're speaking plain HTTP to an SSL-enabled server port.<br /> Instead use the HTTPS scheme to access this URL, please.<br /> </p> <hr> <address>Apache/2.4.25 (Univention) Server at ucs-8074.lan-bcn-s-l.intranet Port 443</address> </body></html>
These CVEs were matched on software built by an operating-system distribution whose package revision the service does not show. Distributions often fix a flaw without changing the upstream version number, so whether this build is affected cannot be told from its version. They are not counted.
CVEs by severity: HIGH 2 MEDIUM 9 LOW 1
| CVE | Software |
|---|---|
| CVE-2020-15778 HIGH 7.4 | openssh 7.4p1 · port 22 |
| CVE-2021-41617 HIGH 7.0 | openssh 7.4p1 · port 22 |
| CVE-2019-6109 MEDIUM 6.8 | openssh 7.4p1 · port 22 |
| CVE-2019-6110 MEDIUM 6.8 | openssh 7.4p1 · port 22 |
| CVE-2019-6111 MEDIUM 5.9 | openssh 7.4p1 · port 22 |
| CVE-2020-14145 MEDIUM 5.9 | openssh 7.4p1 · port 22 |
| CVE-2016-20012 MEDIUM 5.3 | openssh 7.4p1 · port 22 |
| CVE-2017-15906 MEDIUM 5.3 | openssh 7.4p1 · port 22 |
| CVE-2018-15473 MEDIUM 5.3 | openssh 7.4p1 · port 22 |
| CVE-2018-15919 MEDIUM 5.3 | openssh 7.4p1 · port 22 |
| CVE-2018-20685 MEDIUM 5.3 | openssh 7.4p1 · port 22 |
| CVE-2021-36368 LOW 3.7 | openssh 7.4p1 · port 22 |
These CVEs need a platform this host visibly does not run (for example a flaw of the Windows build on a Linux host). They are not counted.
CVEs by severity: HIGH 2 MEDIUM 2
| CVE | Software |
|---|---|
| CVE-2024-40898 HIGH 7.5 | http_server 2.4.25 · port 80 |
| CVE-2024-43394 HIGH 7.5 | http_server 2.4.25 · port 80 |
| CVE-2020-13938 MEDIUM 5.5 | http_server 2.4.25 · port 80 |
| CVE-2022-28330 MEDIUM 5.3 | http_server 2.4.25 · port 80 |
Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.