C:\WPScan>ruby wpscan.rb --url demo.dewabiz.co.id/idtimez --enumerate p
_______________________________________________________________
__ _______ _____
\ \ / / __ \ / ____|
\ \ /\ / /| |__) | (___ ___ __ _ _ __ ®
\ \/ \/ / | ___/ \___ \ / __|/ _` | '_ \
\ /\ / | | ____) | (__| (_| | | | |
\/ \/ |_| |_____/ \___|\__,_|_| |_|
WordPress Security Scanner by the WPScan Team
Version 2.9.4-dev
Sponsored by Sucuri -
https://sucuri.net
@_WPScan_, @ethicalhack3r, @erwan_lr, @_FireFart_
_______________________________________________________________
[+] URL:
http://demo.dewabiz.co.id/idtimez/
[+] Started: Sun Sep 30 17:31:31 2018
[+] Interesting header: LINK: <
https://demo.dewabiz.co.id/idtimez/wp-json/>; rel="
https://api.w.org/"
[+] Interesting header: SERVER: LiteSpeed
[+] Interesting header: X-POWERED-BY: PHP/5.6.38
[+] XML-RPC Interface available under:
http://demo.dewabiz.co.id/idtimez/xmlrpc.php
[!] Upload directory has directory listing enabled:
http://demo.dewabiz.co.id/idtimez/wp-content/uploads/
[!] Includes directory has directory listing enabled:
http://demo.dewabiz.co.id/idtimez/wp-includes/
[+] WordPress version 4.9.8 (Released on 2018-08-02) identified from advanced fingerprinting, meta generator, links opml
[+] Enumerating installed plugins (only ones marked as popular) ...
Time: 00:03:04 <=======================> (1497 / 1497) 100.00% Time: 00:03:04
[+] We found 5 plugins:
[+] Name: all-in-one-seo-pack - v2.8
| Latest version: 2.8 (up to date)
| Last updated: 2018-09-10T17
00.000Z
| Location:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/all-in-one-seo-pack/
| Readme:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/all-in-one-seo-pack/readme.txt
[+] Name: autoptimize - v2.3.4
| Last updated: 2018-09-25T13
00.000Z
| Location:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/autoptimize/
| Readme:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/autoptimize/readme.txt
[!] The version is out of date, the latest version is 2.4.0
[+] Name: jetpack - v6.5
| Latest version: 6.5 (up to date)
| Last updated: 2018-09-05T02
00.000Z
| Location:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/jetpack/
| Readme:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/jetpack/readme.txt
| Changelog:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/jetpack/changelog.txt
[!] Directory listing is enabled:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/jetpack/
[+] Name: litespeed-cache - v2.6
| Last updated: 2018-09-24T21
00.000Z
| Location:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/litespeed-cache/
| Readme:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/litespeed-cache/readme.txt
[!] The version is out of date, the latest version is 2.6.0.1
[!] Directory listing is enabled:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/litespeed-cache/
[+] Name: loginizer - v1.4.0
| Latest version: 1.4.0 (up to date)
| Last updated: 2018-05-22T10
00.000Z
| Location:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/loginizer/
| Readme:
http://demo.dewabiz.co.id/idtimez/wp-content/plugins/loginizer/readme.txt
[+] Finished: Sun Sep 30 17:34:51 2018
[+] Requests Done: 1567
[+] Elapsed time: 00:03:19