Author Topic: Website with outdated CMS(WordPress) and script issues...  (Read 1233 times)

0 Members and 2 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34051
  • malware fighter
Website with outdated CMS(WordPress) and script issues...
« on: July 30, 2018, 11:16:51 PM »
See: privacy impact score = F grade: https://webcookies.org/cookies/adaaran.com/545729#
3 errors and 8 warnings: https://sonarwhal.com/scanner/ac159932-fe89-4c70-9ef6-739dd861414b
ERROR
Bootstrap@3.3.7 has 1 known vulnerabilities (1 medium). See https://snyk.io/vuln/npm:bootstrap for more information.
-https://www.adaaran.com/
ERROR
jQuery@1.10.2 has 1 known vulnerabilities (1 medium). See https://snyk.io/vuln/npm:jquery for more information.
-https://www.adaaran.com/
ERROR
jQuery UI@1.10.4 has 1 known vulnerabilities (1 high). See https://snyk.io/vuln/npm:jquery-ui for more information.
-https://www.adaaran.com/

errors:
Quote
found JavaScript
     error: undefined variable k
     info: [element] URL=-www.adaaran.com/wp-content/themes/adaaranresortsrevamp/js/undefined
     info: [1] no JavaScript
&
Quote
-www.adaaran.com/wp-content/themes/adaaranresortsrevamp/js/emebase.min.js?vid=3.24 benign
[nothing detected] (script) -www.adaaran.com/wp-content/themes/adaaranresortsrevamp/js/emebase.min.js?vid=3.24
     status: (referer=-www.adaaran.com/)saved 8223 bytes af4b866d1a3a31c1e68711a80b7b022ef29ebe11
     info: [decodingLevel=0] found JavaScript
     error: undefined variable $
     error: undefined function $ 

WordPress Version
4.7.3
Version does not appear to be latest - F-status grade and recommendations: https://observatory.mozilla.org/analyze/www.adaaran.com
and consider: https://aw-snap.info/file-viewer/?protocol=not-secure&tgt=adaaran.com&ref_sel=GSP2&ua_sel=ff&fs=1

Blocked by uMatrix for me is script from -http://scripts.affilired.com
Also consider: https://www.shodan.io/host/52.84.122.74 and  7 red out of 10 risk here: https://toolbar.netcraft.com/site_report?url=https%3A%2F%2Fserver-52-84-122-74.iad16.r.cloudfront.net%2F  &  https://toolbar.netcraft.com/site_report?url=https%3A%2F%2Fwww.adaaran.com  (1 red out of 10 grade)

polonus (volunteer website security analyst and website error-hunter)
« Last Edit: July 30, 2018, 11:50:28 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!