Advertisement
Guest User

Untitled

a guest
Jan 21st, 2020
130
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.18 KB | None | 0 0
  1. root@kali:~# wpscan --url https://www.nordfront.dk --enumerate u
  2. _______________________________________________________________
  3. __ _______ _____
  4. \ \ / / __ \ / ____|
  5. \ \ /\ / /| |__) | (___ ___ __ _ _ __ ®
  6. \ \/ \/ / | ___/ \___ \ / __|/ _` | '_ \
  7. \ /\ / | | ____) | (__| (_| | | | |
  8. \/ \/ |_| |_____/ \___|\__,_|_| |_|
  9.  
  10. WordPress Security Scanner by the WPScan Team
  11. Version 3.7.5
  12. Sponsored by Automattic - https://automattic.com/
  13. @_WPScan_, @ethicalhack3r, @erwan_lr, @_FireFart_
  14. _______________________________________________________________
  15.  
  16. [+] URL: https://www.nordfront.dk/
  17. [+] Started: Tue Jan 21 12:49:47 2020
  18.  
  19. Interesting Finding(s):
  20.  
  21. [+] https://www.nordfront.dk/
  22. | Interesting Entries:
  23. | - cf-cache-status: DYNAMIC
  24. | - expect-ct: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct"
  25. | - server: cloudflare
  26. | - cf-ray: 558b206a6b9ddc4b-LHR
  27. | Found By: Headers (Passive Detection)
  28. | Confidence: 100%
  29.  
  30. [+] https://www.nordfront.dk/robots.txt
  31. | Interesting Entries:
  32. | - /wp-admin/
  33. | - /wp-admin/admin-ajax.php
  34. | Found By: Robots Txt (Aggressive Detection)
  35. | Confidence: 100%
  36.  
  37. [+] https://www.nordfront.dk/xmlrpc.php
  38. | Found By: Direct Access (Aggressive Detection)
  39. | Confidence: 100%
  40. | References:
  41. | - http://codex.wordpress.org/XML-RPC_Pingback_API
  42. | - https://www.rapid7.com/db/modules/auxiliary/scanner/http/wordpress_ghost_scanner
  43. | - https://www.rapid7.com/db/modules/auxiliary/dos/http/wordpress_xmlrpc_dos
  44. | - https://www.rapid7.com/db/modules/auxiliary/scanner/http/wordpress_xmlrpc_login
  45. | - https://www.rapid7.com/db/modules/auxiliary/scanner/http/wordpress_pingback_access
  46.  
  47. [+] https://www.nordfront.dk/wp-cron.php
  48. | Found By: Direct Access (Aggressive Detection)
  49. | Confidence: 60%
  50. | References:
  51. | - https://www.iplocation.net/defend-wordpress-from-ddos
  52. | - https://github.com/wpscanteam/wpscan/issues/1299
  53.  
  54. [+] WordPress version 4.9.3 identified (Insecure, released on 2018-02-05).
  55. | Found By: Rss Generator (Passive Detection)
  56. | - https://www.nordfront.dk/feed/, <generator>https://wordpress.org/?v=4.9.3</generator>
  57. | Confirmed By: Emoji Settings (Passive Detection)
  58. | - https://www.nordfront.dk/, Match: 'wp-includes\/js\/wp-emoji-release.min.js?ver=4.9.3'
  59.  
  60. [+] WordPress theme in use: nordfront2
  61. | Location: https://www.nordfront.dk/wp-content/themes/nordfront2/
  62. | Style URL: https://www.nordfront.dk/wp-content/themes/nordfront2/style.css
  63. |
  64. | Found By: Css Style In Homepage (Passive Detection)
  65. | Confirmed By: Css Style In 404 Page (Passive Detection)
  66. |
  67. | The version could not be determined.
  68.  
  69. [+] Enumerating Users (via Passive and Aggressive Methods)
  70. Brute Forcing Author IDs - Time: 00:00:07 <=================> (10 / 10) 100.00% Time: 00:00:07
  71.  
  72. [i] User(s) Identified:
  73.  
  74. [+] Redaktionen
  75. | Found By: Rss Generator (Passive Detection)
  76.  
  77. [+] anders-dahl
  78. | Found By: Wp Json Api (Aggressive Detection)
  79. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  80. | Confirmed By: Yoast Seo Author Sitemap (Aggressive Detection)
  81. | - https://www.nordfront.dk/author-sitemap.xml
  82.  
  83. [+] fredrik-vejdeland
  84. | Found By: Wp Json Api (Aggressive Detection)
  85. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  86. | Confirmed By:
  87. | Yoast Seo Author Sitemap (Aggressive Detection)
  88. | - https://www.nordfront.dk/author-sitemap.xml
  89. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  90.  
  91. [+] guestwriter
  92. | Found By: Wp Json Api (Aggressive Detection)
  93. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  94. | Confirmed By: Yoast Seo Author Sitemap (Aggressive Detection)
  95. | - https://www.nordfront.dk/author-sitemap.xml
  96.  
  97. [+] haakon-forwald
  98. | Found By: Wp Json Api (Aggressive Detection)
  99. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  100. | Confirmed By:
  101. | Yoast Seo Author Sitemap (Aggressive Detection)
  102. | - https://www.nordfront.dk/author-sitemap.xml
  103. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  104.  
  105. [+] henrik-jarsbo
  106. | Found By: Wp Json Api (Aggressive Detection)
  107. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  108.  
  109. [+] jacob-dk
  110. | Found By: Wp Json Api (Aggressive Detection)
  111. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  112.  
  113. [+] klas-lund
  114. | Found By: Wp Json Api (Aggressive Detection)
  115. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  116. | Confirmed By:
  117. | Yoast Seo Author Sitemap (Aggressive Detection)
  118. | - https://www.nordfront.dk/author-sitemap.xml
  119. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  120.  
  121. [+] paulina-forslund
  122. | Found By: Wp Json Api (Aggressive Detection)
  123. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  124. | Confirmed By:
  125. | Yoast Seo Author Sitemap (Aggressive Detection)
  126. | - https://www.nordfront.dk/author-sitemap.xml
  127. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  128.  
  129. [+] redaktionen
  130. | Found By: Wp Json Api (Aggressive Detection)
  131. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  132. | Confirmed By:
  133. | Yoast Seo Author Sitemap (Aggressive Detection)
  134. | - https://www.nordfront.dk/author-sitemap.xml
  135. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  136.  
  137. [+] robert-eklund
  138. | Found By: Wp Json Api (Aggressive Detection)
  139. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  140. | Confirmed By:
  141. | Yoast Seo Author Sitemap (Aggressive Detection)
  142. | - https://www.nordfront.dk/author-sitemap.xml
  143. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  144.  
  145. [+] simon-lindberg
  146. | Found By: Wp Json Api (Aggressive Detection)
  147. | - https://www.nordfront.dk/wp-json/wp/v2/users/?per_page=100&page=1
  148. | Confirmed By:
  149. | Yoast Seo Author Sitemap (Aggressive Detection)
  150. | - https://www.nordfront.dk/author-sitemap.xml
  151. | Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  152.  
  153. [+] Kristin G Andresen
  154. | Found By: Rss Generator (Aggressive Detection)
  155.  
  156. [+] Lars
  157. | Found By: Rss Generator (Aggressive Detection)
  158.  
  159. [+] Thomas P
  160. | Found By: Rss Generator (Aggressive Detection)
  161.  
  162. [+] Norden
  163. | Found By: Rss Generator (Aggressive Detection)
  164.  
  165. [+] jonas
  166. | Found By: Rss Generator (Aggressive Detection)
  167.  
  168. [+] Herman von Snaps
  169. | Found By: Rss Generator (Aggressive Detection)
  170.  
  171. [+] robin-hermansson
  172. | Found By: Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  173.  
  174. [+] robin-palmblad
  175. | Found By: Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  176.  
  177. [+] henrik-asferg
  178. | Found By: Author Id Brute Forcing - Author Pattern (Aggressive Detection)
  179.  
  180. [!] No WPVulnDB API Token given, as a result vulnerability data has not been output.
  181. [!] You can get a free API token with 50 daily requests by registering at https://wpvulndb.com/users/sign_up.
  182.  
  183. [+] Finished: Tue Jan 21 12:50:33 2020
  184. [+] Requests Done: 122
  185. [+] Cached Requests: 8
  186. [+] Data Sent: 42.721 KB
  187. [+] Data Received: 3.263 MB
  188. [+] Memory used: 161.603 MB
  189. [+] Elapsed time: 00:00:45
  190. root@kali:~#
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement