Scan Report
Target: http://www.moci.gov.so
Date: Mon Apr 28 2025
Found Issues: 3
scan finished within 35″ after 5 requests.
Risk Issue Severity
Executive Summary
SmartScanner conducted a scan on www.moci.gov.so to find security weaknesses and vulnerabilities.
The scan took 35 seconds. After performing 5 requests, SmartScanner found 3 issues in which 1 of
them has medium severity. The overall security risk of www.moci.gov.so is 3 out of 5. To reduce the
security risk, please fix the found issues as soon as possible. Technical details, as well as remediation of
results, can be found in the following. *
* DISCLAIMER: This report is only limited to the results of SmartScanner findings.
SmartScanner Scan Report TheSmartScanner.com
Scan Report
List of Issues
1– Medium Impact Issue
1.1– http://www.moci.gov.so
2– X-Powered-By Header Found
2.1– https://www.moci.gov.so/
3– Target Information
3.1– https://www.moci.gov.so
SmartScanner Scan Report TheSmartScanner.com
Scan Report
1.1 Medium Impact Issue
S E V E RIT Y Medium
URL http://www.moci.gov.so
This type of issue is only available in the Professional version
SmartScanner Scan Report TheSmartScanner.com
Scan Report
2.1 X-Powered-By Header Found
S E V E RIT Y Informational
URL https://www.moci.gov.so/
X - P OWERED-BY PHP/8.2.28
REQUEST / RESPONSE
#1
GET / HTTP/1.1
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-US,en;q=0.5
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrom
e/119.0.0.0 Safari/537.36
Content-Length: 0
HTTP/1.1 301 Moved Permanently
Connection: Keep-Alive
Keep-Alive: timeout=5, max=100
x-powered-by: PHP/8.2.28
content-type: text/html; charset=UTF-8
x-redirect-by: WordPress
location: https://moci.gov.so/
content-length: 0
date: Mon, 28 Apr 2025 13:27:56 GMT
server: LiteSpeed
strict-transport-security: max-age=63072000; includeSubDomains
x-frame-options: SAMEORIGIN
x-content-type-options: nosniff
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":44
3"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"
DESCRIPTION
The X-Powered-By header describes the technologies used by the webserver. This information
exposes the server to attackers. Using the information in this header, attackers can find vulnerabilities
easier.
RECOMMENDATION
Configure the webserver to stop sending the X-Powered-By header.
SmartScanner Scan Report TheSmartScanner.com
Scan Report
3.1 Target Information
S E V E RIT Y Informational
URL https://www.moci.gov.so
X - P OWERED-BY PHP/8.2.28
SmartScanner Scan Report TheSmartScanner.com
Scan Report
SmartScanner Scan Report TheSmartScanner.com