Advertisement
Guest User

greatscott

a guest
Feb 6th, 2016
86
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.03 KB | None | 0 0
  1. [+] URL: http://greatscottcommunications.com/
  2. [+] Started: Sat Feb 6 19:11:19 2016
  3.  
  4. [+] robots.txt available under: 'http://greatscottcommunications.com/robots.txt'
  5. [!] The WordPress 'http://greatscottcommunications.com/readme.html' file exists exposing a version number
  6. [!] Full Path Disclosure (FPD) in 'http://greatscottcommunications.com/wp-includes/rss-functions.php':
  7. [+] Interesting header: LINK: <http://greatscottcommunications.com/>; rel=shortlink
  8. [+] Interesting header: SERVER: Apache
  9. [+] Interesting header: X-POWERED-BY: PHP/5.4.34
  10. [!] Registration is enabled: http://greatscottcommunications.com/wp-login.php?action=register
  11. [!] Upload directory has directory listing enabled: http://greatscottcommunications.com/wp-content/uploads/
  12.  
  13. [+] WordPress version 4.2.7 identified from meta generator
  14.  
  15. [+] WordPress theme in use: ward-pro - v1.0.8
  16.  
  17. [+] Name: ward-pro - v1.0.8
  18. | Location: http://greatscottcommunications.com/wp-content/themes/ward-pro/
  19. | Readme: http://greatscottcommunications.com/wp-content/themes/ward-pro/readme.txt
  20. | Style URL: http://greatscottcommunications.com/wp-content/themes/ward-pro/style.css
  21. | Theme Name: Ward Pro
  22. | Theme URI: https://themes.bavotasan.com/2013/ward-pro/
  23. | Description: Create a truly unique design with Ward Pro, a lightweight and fully responsive HTML5 theme. Use t...
  24. | Author: c.bavota
  25. | Author URI: http://bavotasan.com/
  26.  
  27. [+] Enumerating plugins from passive detection ...
  28. | 5 plugins found:
  29.  
  30. [+] Name: contact-form-7 - v4.1.2
  31. | Location: http://greatscottcommunications.com/wp-content/plugins/contact-form-7/
  32. | Readme: http://greatscottcommunications.com/wp-content/plugins/contact-form-7/readme.txt
  33. [!] The version is out of date, the latest version is 4.3.1
  34. [!] Directory listing is enabled: http://greatscottcommunications.com/wp-content/plugins/contact-form-7/
  35.  
  36. [+] Name: download-manager
  37. | Latest version: 2.8.9
  38. | Location: http://greatscottcommunications.com/wp-content/plugins/download-manager/
  39.  
  40. [!] We could not determine a version so all vulnerabilities are printed out
  41.  
  42. [!] Title: Download Manager 2.5.8 - Download Package file Parameter Stored XSS
  43. Reference: https://wpvulndb.com/vulnerabilities/6283
  44. Reference: http://www.securityfocus.com/bid/64159/
  45. Reference: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-7319
  46. Reference: https://secunia.com/advisories/55969/
  47. Reference: http://osvdb.org/show/osvdb/101143
  48. [i] Fixed in: 2.5.9
  49.  
  50. [!] Title: Download Manager <= 2.2.2 - admin.php cid Parameter XSS
  51. Reference: https://wpvulndb.com/vulnerabilities/6284
  52. Reference: http://packetstormsecurity.com/files/112708/
  53. Reference: https://secunia.com/advisories/48927/
  54. Reference: http://osvdb.org/show/osvdb/81449
  55. [i] Fixed in: 2.2.3
  56.  
  57. [!] Title: Download Manager <= 2.7.4 - Code Execution / Remote File Inclusion
  58. Reference: https://wpvulndb.com/vulnerabilities/7706
  59. Reference: http://blog.sucuri.net/2014/12/security-advisory-high-severity-wordpress-download-manager.html
  60. Reference: http://osvdb.org/show/osvdb/115287
  61. Reference: https://www.rapid7.com/db/modules/exploit/unix/webapp/wp_downloadmanager_upload
  62. Reference: https://www.exploit-db.com/exploits/35533/
  63. [i] Fixed in: 2.7.5
  64.  
  65. [!] Title: Download Manager 2.7.2 - Privilege Escalation
  66. Reference: https://wpvulndb.com/vulnerabilities/7827
  67. Reference: http://security.szurek.pl/wordpress-download-manager-272-privilege-escalation.html
  68. Reference: http://packetstormsecurity.com/files/130690/
  69. Reference: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9260
  70. Reference: https://www.exploit-db.com/exploits/36301/
  71. [i] Fixed in: 2.7.3
  72.  
  73. [!] Title: WordPress Download Manager <= 2.7.94 - Authenticated Stored XSS
  74. Reference: https://wpvulndb.com/vulnerabilities/8104
  75. Reference: https://plugins.trac.wordpress.org/changeset/1199505/download-manager
  76. Reference: http://packetstormsecurity.com/files/132716/
  77. [i] Fixed in: 2.7.95
  78.  
  79. [!] Title: WordPress Download Manager <= 2.8.7 - Multiple Vulnerabilities
  80. Reference: https://wpvulndb.com/vulnerabilities/8365
  81. Reference: http://www.pritect.net/blog/wordpress-download-manager-2-8-8-critical-security-vulnerabilities
  82. Reference: http://www.wpdownloadmanager.com/wordpress-download-manager-security-maintenance-release/
  83. [i] Fixed in: 2.8.8
  84.  
  85. [+] Name: wpdm-button-templates
  86. | Location: http://greatscottcommunications.com/wp-content/plugins/wpdm-button-templates/
  87. [!] Directory listing is enabled: http://greatscottcommunications.com/wp-content/plugins/wpdm-button-templates/
  88.  
  89. [+] Name: wpdm-premium-packages - v2.3.0
  90. | Location: http://greatscottcommunications.com/wp-content/plugins/wpdm-premium-packages/
  91. | Readme: http://greatscottcommunications.com/wp-content/plugins/wpdm-premium-packages/readme.txt
  92. [!] Directory listing is enabled: http://greatscottcommunications.com/wp-content/plugins/wpdm-premium-packages/
  93.  
  94. [+] Name: all-in-one-seo-pack - v2.2.6.2
  95. | Location: http://greatscottcommunications.com/wp-content/plugins/all-in-one-seo-pack/
  96. | Readme: http://greatscottcommunications.com/wp-content/plugins/all-in-one-seo-pack/readme.txt
  97. [!] The version is out of date, the latest version is 2.2.7.6
  98. [!] Directory listing is enabled: http://greatscottcommunications.com/wp-content/plugins/all-in-one-seo-pack/
  99.  
  100. [+] Enumerating usernames ...
  101. [+] Identified the following 10 user/s:
  102. +----+----------------+----------------+
  103. | Id | Login | Name |
  104. +----+----------------+----------------+
  105. | 1 | kscott | kscott |
  106. | 2 | johnsmith2223 | JohnSmith2223 |
  107. | 3 | lbzxxh520 | lbzxxh520 |
  108. | 4 | melodybrownlow | MelodyBrownlow |
  109. | 5 | latishaeelz | LatishaEELZ |
  110. | 6 | salinacenteno | SalinaCenteno |
  111. | 7 | davidachowne | DavidaChowne |
  112. | 8 | sven6733sdzaj | Sven6733sdzaj |
  113. | 9 | groverblohm | GroverBlohm |
  114. | 10 | omlsyreeta | OMLSyreeta |
  115. +----+----------------+----------------+
  116.  
  117. [+] Finished: Sat Feb 6 19:11:51 2016
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement