Host

85.222.232.147

Tags: Expired certificate

As of our latest check on 2026-05-26, 85.222.232.147 (Zone Media OU, AS49604, Netherlands) had 3 open ports (22, 80, 443) and 85 known CVEs, 3 known to be exploited.

Known CVEs on this host

3open ports
0names pointing here
85known CVEs
3known exploited

Open ports and CVEs as of our latest check of this host, 2026-05-26.

CVEs by severity: CRITICAL 18 HIGH 43 MEDIUM 22 LOW 2

A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list

Not counted: 15 from an older observation (http_server 2.4.37, openssh 8.0; matched 2026-06-08). See them

Network
Zone Media OU AS49604
Open ports
22, 80, 443 · at our latest check, 2026-05-26
Location
Netherlands NL
Hostname
uvn-232-147.ams01.zonevs.eu · reverse DNS, checked 2026-10-04
Route
85.222.232.0/22 · announced by Zone Media OU AS49604 RPKI valid
Organisation
Zone · Content / hosting
Registry network
EE-ZONE-INFRA · 85.222.232.144 - 85.222.232.151 · RIPE
Abuse contact
[email protected] · for EE-ZONE-INFRA
First seen
2026-05-26 10:44 UTC
Last seen alive
2026-05-26 10:44 UTC
Hosted domains
No host name points here

Reputation

Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.

Services (3)

22/tcp SSH OpenSSH_8.0 11 CVEs first 2026-05-26 · last 2026-05-26
Server
SSH-2.0-OpenSSH_8.0
Host key
ssh-ed25519 a2247e592ab1289d…
Raw response
SSH-2.0-OpenSSH_8.0
80/tcp HTTP Apache/2.4.37 (rocky) OpenSSL/1.1.1k 74 CVEs first 2026-05-26 · last 2026-05-26
Status
302 Found
Title
302 Found
Server
Apache/2.4.37 (rocky) OpenSSL/1.1.1k
Raw response
HTTP/1.1 302 Found
Date: Tue, 26 May 2026 10:44:19 GMT
Server: Apache/2.4.37 (rocky) OpenSSL/1.1.1k
Expires: Wed, 01 Jan 1997 12:00:00 GMT
Cache-Control: private,no-store,no-cache,max-age=0
Location: https://wayf.switch.ch/SWITCHaai/WAYF?entityID=https%3A%2F%2Fswitch.isic.ch%2Fshibboleth&return=https%3A%2F%2F85.222.232.147%2FShibboleth.sso%2FLogin%3FSAMLDS%3D1%26target%3Dss%253Amem%253Aa321075b36860de16c4f448bc3a551dbf9d93192a42c32f4114c952a128d431f
Content-Length: 441
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>302 Found</title>
</head><body>
<h1>Found</h1>
<p>The document has moved <a href="https://wayf.switch.ch/SWITCHaai/WAYF?entityID=https%3A%2F%2Fswitch.isic.ch%2Fshibboleth&amp;return=https%3A%2F%2F85.222.232.147%2FShibboleth.sso%2FLogin%3FSAMLDS%3D1%26target%3Dss%253Amem%253Aa321075b36860de16c4f448bc3a551dbf9d93192a42c32f4114c952a128d431f">here</a>.</p>
</body></html>
443/tcp TLS first 2026-05-26 · last 2026-05-26
TLS
TLSv1.2
Certificate for
uvn-232-147.ams01.zonevs.eu
Issued by
uvn-232-147.ams01.zonevs.eu
Valid
2023-08-14 → 2024-08-13
Note
self-signed certificate
Raw response
HTTP/1.1 400 Bad Request
Date: Tue, 26 May 2026 10:44:19 GMT
Server: Apache/2.4.37 (rocky) OpenSSL/1.1.1k
Content-Length: 362
Connection: close
Content-Type: text/html; charset=iso-8859-1

<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>400 Bad Request</title>
</head><body>
<h1>Bad Request</h1>
<p>Your browser sent a request that this server could not understand.<br />
Reason: You're speaking plain HTTP to an SSL-enabled server port.<br />
 Instead use the HTTPS scheme to access this URL, please.<br />
</p>
</body></html>

Vulnerabilities

From an older observation (15)

These CVEs were matched on software this host reported in an earlier observation (matched 2026-06-08), not on a port that is open now; the host was last checked 2026-05-26. They are not counted above.

CVEs by severity: CRITICAL 1 HIGH 7 MEDIUM 6 LOW 1

CVESoftware
CVE-2026-28780 CRITICAL 9.8 http_server 2.4.37
CVE-2026-24072 HIGH 8.8 http_server 2.4.37
CVE-2026-35385 HIGH 8.1 openssh 8.0
CVE-2026-35386 HIGH 8.1 openssh 8.0
CVE-2026-35414 HIGH 8.1 openssh 8.0
CVE-2026-29169 HIGH 7.5 http_server 2.4.37
CVE-2026-34059 HIGH 7.5 http_server 2.4.37
CVE-2026-29168 HIGH 7.3 http_server 2.4.37
CVE-2026-33523 MEDIUM 6.5 http_server 2.4.37
CVE-2026-35387 MEDIUM 6.5 openssh 8.0
CVE-2026-33007 MEDIUM 5.3 http_server 2.4.37
CVE-2026-33857 MEDIUM 5.3 http_server 2.4.37
CVE-2026-34032 MEDIUM 5.3 http_server 2.4.37
CVE-2026-33006 MEDIUM 4.8 http_server 2.4.37
CVE-2026-35388 LOW 2.5 openssh 8.0

Port history

Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.