Scan report for "omnivat.be"

Membership level: Free member
Summary

Found

25

Duration

1min 10sec

Date

2026-09-13

IP

46.30.215.68

Report
Nikto scan (max 60 sec) (nikto -host omnivat.be -maxtime 60)
- Nikto v2.6.0
---------------------------------------------------------------------------
+ Target IP:          46.30.215.68
+ Target Hostname:    omnivat.be
+ Target Port:        80
+ Platform:           Unknown
+ Start Time:         2026-09-13 11:56:08 (GMT-4)
---------------------------------------------------------------------------
+ Server: Apache
+ Multiple IPs found: 46.30.215.68, 2a02:2350:5:111:23:c144:5b3f:b9ca
+ [95] /: Cookie pll_language created without the httponly flag. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Cookies
+ [999986] /: Retrieved via header: 1.1 webcache1 (Varnish/trunk).
+ [999986] /: Retrieved x-powered-by header: PHP/8.4.25.
+ [999100] /: Uncommon header(s) 'x-redirect-by' found, with contents: WordPress.
+ [750500] /icons/: Directory indexing found.
+ No CGI Directories found (use '-C all' to force check all possible dirs). CGI tests skipped.
+ [999984] /robots.txt: Server may leak inodes via ETags, header found with file /robots.txt, inode: W/150, size: 5673f8e8cc25b, mtime: gzip. See: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1418
+ [999962] /: Server banner changed from 'Apache' to 'Varnish'.
+ [999997] /robots.txt: Entry 'priorite.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'contact.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'equipe.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'audit.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'representation.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'services.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'qui-sommes-nous.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'home.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'mission.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'welcome.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'compliance.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [999997] /robots.txt: Entry 'conseils.php' is returned a non-forbidden or redirect HTTP code (400). See: https://portswigger.net/kb/issues/00600600_robots-txt-file
+ [013587] /: Suggested security header missing: referrer-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy
+ [013587] /: Suggested security header missing: x-content-type-options. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Content-Type-Options
+ [013587] /: Suggested security header missing: permissions-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Permissions-Policy
+ [013587] /: Suggested security header missing: content-security-policy. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/CSP
+ [013587] /: Suggested security header missing: strict-transport-security. See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security
+ [000427] /nikto-test-vCppLErP.html: Link header(s) found with value(s): <https://www.omnivat.be/wp-json/>; rel="https://api.w.org/". See: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Link
+ Scan terminated: 0 errors and 25 items reported on the remote host
+ End Time:           2026-09-13 11:57:18 (GMT-4) (70 seconds)
---------------------------------------------------------------------------
+ 1 host(s) tested
Detailed report
Target
omnivat.be
Target IP
46.30.215.68
Scan method
Nikto scan (max 60 sec)
Run command
nikto -host omnivat.be -maxtime 60
Duration
Quick report
Scan date
13 Sep 2026 11:57
Copy scan report
Download report
Remove scan result
$
Check ports
Wordpress site
API - Scan ID