Back to Free Tools

Joomla Stack Check

montargil.pt

C
montargil.pt
Check Complete

Results Summary

21 findings detected across montargil.pt.

Severity Breakdown

Total findings detected across all components. The public summary below groups findings by vulnerability type. To see every affected component in full detail, run a free scan on your own domain at vulnify.app/tools.

High3
Medium6
Low2
Info10

Findings Overview

21 unique issues shown below, grouped from 21 total findings. When a vulnerability affects multiple components, it is listed once with the affected component count.

  • high Strict-Transport-Security (HSTS): missing

    Ensures the browser only connects over HTTPS

  • high Content-Security-Policy (CSP): missing

    Prevents XSS and data injection attacks

  • high Content-Security-Policy header missing

    No CSP header detected. XSS impact surface is larger.

  • medium X-Frame-Options: missing

    Prevents clickjacking attacks

  • medium X-Content-Type-Options: missing

    Prevents MIME-type sniffing

  • medium X-XSS-Protection: missing

    Legacy XSS protection (modern browsers use CSP)

  • medium Referrer-Policy: missing

    Controls how much referrer information is shared

  • medium Permissions-Policy: missing

    Controls browser features and APIs

  • medium [REDACTED]: missing

    Restricts Adobe Flash and PDF policies

  • low Limited Joomla component visibility from the public surface

    No strong Joomla component or template slugs were extracted from the initial public response. This can happen when assets are rewritten or optimized.

  • low Joomla administrator entry point is publicly reachable

    Observed /administrator/ responding with status 403. Public reachability is common, but high-value admin paths should still be protected by stronger controls and monitoring.

  • info Joomla footprint signals are weak or missing

    Joomla signal count: 0. Confirm the target is a live Joomla frontend URL.

  • info Broader Joomla route coverage completed

    Sampled 2 frontend route(s) plus bounded public Joomla surfaces for deeper evidence.

  • info TLS grade: A+

    Protocol: TLSv1.3; Cipher: TLS_AES_256_GCM_SHA384 (TLSv1.3)

  • info No Set-Cookie headers observed

    No cookies were set on this response.

  • info No CORS header observed

    No Access-Control-Allow-Origin header was returned on OPTIONS preflight or GET with a foreign Origin. This may be expected for same-origin-only apps.

  • info Redirect chain length is healthy

    1 hop(s)

  • info No obvious mixed-content references found

    No `http://` src/href values detected in the fetched HTML.

  • info No common sensitive paths were publicly accessible

    Sampled common high-risk paths with safe passive checks.

  • info Some high-value paths appear present but access-controlled

    /inicio/admin (403), /inicio/wp-admin (403), /inicio/.git/config (403), /inicio/.git/HEAD (403), /inicio/.env (403), /inicio/phpinfo.php (403), /inicio/backup.zip (403), /inicio/debug (403), /inicio/config (403), /inicio/server-status (403), /inicio/…

1 finding are grouped in this public summary

This public page groups findings by vulnerability type to avoid exposing sensitive configuration details about montargil.pt. To see the full breakdown including every affected component, version number, and remediation step, run a free scan on your own domain using Vulnify.

Run a Free Scan on montargil.pt

What the Joomla Stack Check Covers

This security profile for montargil.pt was generated by Vulnify. The check analyzes:

  • Joomla core version and vulnerability lookup
  • Extension inventory and security assessment
  • Template and component identification
  • Security headers and configuration checks
  • Exposed configuration and sensitive file checks

Prioritized Actions

  • highAdd Content-Security-Policy (CSP) header
  • highAdd Strict-Transport-Security (HSTS) header
  • highAdd baseline CSP
  • highHarden cookies
  • mediumValidate Joomla target surface
  • mediumAdd X-Frame-Options header
  • mediumAdd X-Content-Type-Options header
  • mediumAdd Referrer-Policy header
  • mediumUse hardened cookie prefixes where possible

Run a Full Security Scan on montargil.pt

Check for XSS, SQL injection, CSRF, broken authentication, and 50+ additional security tests with a complete vulnerability assessment.

About This Check

This report was generated using Vulnify's free security tools. Results reflect the configuration at the time of the check. For ongoing monitoring, detailed remediation guidance, and vulnerability scanning across 50+ security tests, create a free Vulnify account.

Last checked:

Report abuse

If this page contains sensitive data, copyright issues, or should not be public, report it.