Site Information
WordPress Version: 6.9 VULNERABLE
Theme: astra (used by 400,837 domains)
Last Checked: 2026-09-05 14:30:25
HTTPS: Yes
Server: Apache
Response time (TTFB): 505 ms
Hosting: IONOS SE (AS8560)
IP address: 217.160.0.170
Other WordPress sites on this IP (13)
These WordPress sites are served from the same IP (217.160.0.170) — usually shared hosting or the same owner. Domains are obfuscated, as everywhere on the site.
- b*n*e*c*n*i*u*t*o*.com
- d*r*s*n*e*u*g*-*e*s*e*.com
- d*f*g*r*e*.info
- e*t*o*y*e*o.fr
- e*z*l*n*t*.de
- e*a*v*r*u*l*d*i*.com
- f*i*a*p.es
- h*l*n*h*g*e.com
- h*l*n*-*d*a*e.com
- r*d*h*e*d*n*r*y.com
- r*f*r*a*e*g*n*r*l*a*l*r*a.com
- v*r*e*h*a*.com
- v*y*a*e*e*g*.com
Plugins (3)
| Plugin | Used By |
|---|---|
| astra-sites | 108,219 |
| elementor | 1,724,510 |
| header-footer-elementor | 199,691 |
Security Headers
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.