Vulnerability Intelligence

Findings recorded during authorized assessments, with evidence and remediation.

VIC-001 · 10.10.10.25:22

Outdated SSH Service

High
Confidence91%

Evidence · Banner: OpenSSH_7.4 — legacy build with known advisories in lab inventory.

Remediation · Upgrade OpenSSH to a supported release and disable legacy KEX/ciphers.

Included in reportsshCVE-2018-15473patching

VIC-002 · https://10.10.10.25/admin

Exposed Admin Panel

Critical
Confidence88%

Evidence · Admin login reachable from the lab subnet without network ACL or MFA.

Remediation · Restrict to management VLAN, enforce SSO + MFA, add rate limiting.

Included in reportwebaccess-control

VIC-003 · 10.10.10.25:443

Weak TLS Configuration

Medium
Confidence95%

Evidence · TLS 1.0/1.1 enabled; CBC cipher suites negotiated during handshake test.

Remediation · Disable TLS < 1.2, prefer AEAD suites, enable HSTS.

Drafttlscrypto

VIC-004 · https://10.10.10.25/

Missing Security Headers

Low
Confidence99%

Evidence · No CSP, X-Frame-Options, or Referrer-Policy on responses.

Remediation · Add CSP, frame-ancestors, and Referrer-Policy at the reverse proxy.

Not includedwebhardening