Kann damit gerade nichts Anfangen...
[+] URL:
[198.54.116.242][+] Started: Thu Sep 8 17:30:04 2022
Interesting Finding(s):
[+] Headers
| Interesting Entries:
| - x-litespeed-cache: hit
| - server: LiteSpeed
| - referrer-policy: no-referrer-when-downgrade
| - x-turbo-charged-by: LiteSpeed
| Found By: Headers (Passive Detection)
| Confidence: 100%
[+] robots.txt found:
| Interesting Entries:
| - /wp-admin/
| - /wp-admin/admin-ajax.php
| Found By: Robots Txt (Aggressive Detection)
| Confidence: 100%
[+] WordPress version 5.8.5 identified (Latest, released on 2022-08-30).
| Found By: Rss Generator (Passive Detection)
| - , <generator>
| - , <generator>
[+] WordPress theme in use: astra
| Location:
| Latest Version: 3.9.2
| Last Updated: 2022-09-07T00:00:00.000Z
| Style URL:
|
| Found By: Urls In Homepage (Passive Detection)
|
| The version could not be determined.
[+] Enumerating All Plugins (via Passive Methods)
[+] Checking Plugin Versions (via Passive and Aggressive Methods)
[i] Plugin(s) Identified:
[+] elementor
| Location:
| Latest Version: 3.7.4 (up to date)
| Last Updated: 2022-08-31T17:09:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
|
| Version: 3.7.4 (20% confidence)
| Found By: Query Parameter (Passive Detection)
| -
| -
[+] header-footer-elementor
| Location:
| Latest Version: 1.6.13
| Last Updated: 2022-08-23T12:55:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
|
| [!] 1 vulnerability identified:
|
| [!] Title: Elementor - Header, Footer & Blocks Template < 1.5.8 - Contributor+ Stored XSS
| Fixed in: 1.5.8
| References:
| -
| -
| -
|
| The version could not be determined.
[+] jetpack
| Location:
| Last Updated: 2022-09-06T17:23:00.000Z
| [!] The version is out of date, the latest version is 11.3
|
| Found By: Urls In Homepage (Passive Detection)
|
| Version: 10.6 (10% confidence)
| Found By: Query Parameter (Passive Detection)
| -
[+] woocommerce
| Location:
| Latest Version: 6.8.2 (up to date)
| Last Updated: 2022-09-07T13:20:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
| Confirmed By: Meta Generator (Passive Detection)
|
| Version: 6.8.2 (90% confidence)
| Found By: Query Parameter (Passive Detection)
| -
| -
| -
| Confirmed By: Meta Generator (Passive Detection)
| - , Match: 'WooCommerce 6.8.2'
[+] woolentor-addons
| Location:
| Latest Version: 2.4.4 (up to date)
| Last Updated: 2022-08-23T09:57:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
|
| Version: 2.4.4 (40% confidence)
| Found By: Query Parameter (Passive Detection)
| -
| -
| -
| -
[+] wordpress-seo
| Location:
| Last Updated: 2022-08-31T17:53:00.000Z
| [!] The version is out of date, the latest version is 19.6.1
|
| Found By: Comment (Passive Detection)
|
| Version: 18.1 (60% confidence)
| Found By: Comment (Passive Detection)
| - , Match: 'optimized with the Yoast SEO plugin v18.1 -'
[+] wp-live-chat-software-for-wordpress
| Location:
| Latest Version: 4.5.7
| Last Updated: 2022-07-26T12:47:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
|
| [!] 1 vulnerability identified:
|
| [!] Title: LiveChat <= 3.7.2 - Unauthenticated Option Update/Reset and Stored XSS
| Fixed in: 3.7.6
| References:
| -
| -
|
| The version could not be determined.
[+] wpforms-lite
| Location:
| Latest Version: 1.7.6
| Last Updated: 2022-08-18T10:59:00.000Z
|
| Found By: Urls In Homepage (Passive Detection)
|
| [!] 4 vulnerabilities identified:
|
| [!] Title: Contact Form by WPForms < 1.4.8 - Authenticated Stored Cross-Site Scripting (XSS)
| Fixed in: 1.4.8
| References:
| -
| -
|
| [!] Title: Contact Form by WPForms < 1.4.8.1 - Unauthenticated Cross-Site Scripting (XSS)
| Fixed in: 1.4.8.1
| References:
| -
| -
| -
| -
|
| [!] Title: Contact Form by WPForms < 1.5.9 - Authenticated Cross-Site Scripting (XSS)
| Fixed in: 1.5.9
| References:
| -
| -
| -
| -
| -
| -
|
| [!] Title: Contact Form by WPForms < 1.6.0.2 - Authenticated Stored Cross-Site Scripting (XSS)
| Fixed in: 1.6.0.2
| References:
| -
| -
| -
|
| The version could not be determined.