Host

95.40.31.8

Tags: Cloud Hosting

As of our latest check on 2026-08-13, 95.40.31.8 (Amazon.com, Inc., AS16509, Hong Kong) had 2 open ports (22, 80) and 2 known CVEs.

Known CVEs on this host

2open ports
0names pointing here
2known CVEs
0known exploited

Open ports and CVEs as of our latest check of this host, 2026-08-13.

CVEs by severity: MEDIUM 2

A match is an indication, not proof: it is based on the software version a service reported, and fixes are often backported without changing the version. See the list

Not counted: 26 on a distribution build — the fix may be backported (openssh 8.7). See them

Not counted: 1 only affects another platform (php 7.4.33). See them

Network
Amazon.com, Inc. AS16509
Open ports
22, 80 · at our latest check, 2026-08-13
Location
Hong Kong HK
Hostname
ec2-95-40-31-8.ap-east-1.compute.amazonaws.com · reverse DNS, checked 2026-10-04
Route
95.40.0.0/15 · announced by Amazon.com, Inc. AS16509 RPKI valid
Organisation
Amazon.com, Inc. · Enterprise
Cloud
Amazon Web Services · EC2 · region ap-east-1
Registry network
AMAZON-HKG · 95.40.0.0 - 95.41.255.255 · RIPE
Abuse contact
[email protected] · for AMAZON-HKG
First seen
2026-08-13 14:49 UTC
Last seen alive
2026-08-13 14:52 UTC
Hosted domains
No host name points here

Reputation

Not a Tor relay, not a VPN or privacy relay address, and not on a current public blocklist.

Services (2)

22/tcp SSH OpenSSH_8.7 first 2026-08-13 · last 2026-08-13
Server
SSH-2.0-OpenSSH_8.7
Host key
ssh-ed25519 676f31be4065d665…
Raw response
SSH-2.0-OpenSSH_8.7
80/tcp HTTP nginx 2 CVEs first 2026-08-13 · last 2026-08-13
Status
200 OK
Server
nginx
Powered by
PHP/7.4.33
Raw response
HTTP/1.1 200 OK
Server: nginx
Date: Thu, 13 Aug 2026 14:50:28 GMT
Content-Type: image/jpeg
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/7.4.33

d4
<html>
<head>
<META NAME="robots" CONTENT="noindex,nofollow">
<script src="/_Incapsula_Resource?SWJIYLWA=5074a744e2e3d891814e9a2dace20bd4,719d34d31c8e3a6e6fffd425f7e032f3">
</script>
<body>
</body></html>

0

Vulnerabilities

Distribution build — the fix may be backported (26)

These CVEs were matched on software built by an operating-system distribution whose package revision the service does not show. Distributions often fix a flaw without changing the upstream version number, so whether this build is affected cannot be told from its version. They are not counted.

CVEs by severity: CRITICAL 1 HIGH 6 MEDIUM 12 LOW 7

CVESoftware
CVE-2023-38408 CRITICAL 9.8 openssh 8.7 · port 22
CVE-2024-6387 HIGH 8.1 openssh 8.7 · port 22
CVE-2026-35385 HIGH 8.1 openssh 8.7 · port 22
CVE-2026-35414 HIGH 8.1 openssh 8.7 · port 22
CVE-2026-60002 HIGH 7.7 openssh 8.7 · port 22
CVE-2026-60000 HIGH 7.5 openssh 8.7 · port 22
CVE-2021-41617 HIGH 7.0 openssh 8.7 · port 22
CVE-2025-26465 MEDIUM 6.8 openssh 8.7 · port 22
CVE-2023-51385 MEDIUM 6.5 openssh 8.7 · port 22
CVE-2026-35387 MEDIUM 6.5 openssh 8.7 · port 22
CVE-2026-59998 MEDIUM 6.5 openssh 8.7 · port 22
CVE-2026-60001 MEDIUM 6.5 openssh 8.7 · port 22
CVE-2023-48795 MEDIUM 5.9 openssh 8.7 · port 22
CVE-2026-59999 MEDIUM 5.9 openssh 8.7 · port 22
CVE-2026-59995 MEDIUM 5.4 openssh 8.7 · port 22
CVE-2026-59996 MEDIUM 5.4 openssh 8.7 · port 22
CVE-2026-59997 MEDIUM 5.4 openssh 8.7 · port 22
CVE-2016-20012 MEDIUM 5.3 openssh 8.7 · port 22
CVE-2026-73282 MEDIUM 4.8 openssh 8.7 · port 22
CVE-2025-32728 LOW 3.8 openssh 8.7 · port 22
CVE-2021-36368 LOW 3.7 openssh 8.7 · port 22
CVE-2025-61984 LOW 3.6 openssh 8.7 · port 22
CVE-2025-61985 LOW 3.6 openssh 8.7 · port 22
CVE-2026-73281 LOW 3.5 openssh 8.7 · port 22
CVE-2026-35388 LOW 2.5 openssh 8.7 · port 22
CVE-2026-73283 LOW 2.5 openssh 8.7 · port 22
Only affects another platform (1)

These CVEs need a platform this host visibly does not run (for example a flaw of the Windows build on a Linux host). They are not counted.

CVEs by severity: CRITICAL 1

CVESoftware
CVE-2024-3566 CRITICAL 9.8 php 7.4.33 · port 80

Port history

Every port that has answered a connection on this address, and when. A port is listed as open above only when a service was identified on it. Times are UTC.