🔬 增强漏洞扫描报告

https://pentest-ground.com:81 · 2026-04-29 10:51:31 · Autonomous Discovery

0
Critical
0
High
3
Medium
2
Low
0
Info

🚨 高优先级问题 (3个)

MEDIUM Missing Security Headers
URL: https://pentest-ground.com:81
缺少以下安全Header: X-Frame-Options (点击劫持防护), X-Content-Type-Options, Content-Security-Policy, Strict-Transport-Security (HSTS), X-XSS-Protection, Referrer-Policy, Permissions-Policy
MEDIUM CORS Misconfiguration (Wildcard)
URL: https://pentest-ground.com:81
CORS配置允许任意来源(*),可能导致敏感数据被恶意网站访问
MEDIUM Potential Header Injection
URL: https://pentest-ground.com:81
URL可能允许HTTP头注入,需进一步验证

📋 完整发现 (5个)

点击展开