Wpscan anwenden: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
 
Zeile 1: Zeile 1:
  
 
=Enumerate all plugins with known vulnerabilities=
 
=Enumerate all plugins with known vulnerabilities=
*wpscan --url example.com -e vp --plugins-detection mixed
+
*wpscan --url opfer.sec-labs.de -e vp --plugins-detection mixed
  
 
=Enumerate all plugins in our database (could take a very long time)=
 
=Enumerate all plugins in our database (could take a very long time)=
*wpscan --url example.com -e ap --plugins-detection mixed
+
*wpscan --url opfer.sec-labs.de -e ap --plugins-detection mixed
  
 
=Password brute force attack=
 
=Password brute force attack=
*wpscan --url example.com -e u --passwords /path/to/password_file.txt
+
*wpscan --url opfer.sec-labs.de -e u --passwords /path/to/password_file.txt

Aktuelle Version vom 20. August 2026, 06:07 Uhr

Enumerate all plugins with known vulnerabilities

  • wpscan --url opfer.sec-labs.de -e vp --plugins-detection mixed

Enumerate all plugins in our database (could take a very long time)

  • wpscan --url opfer.sec-labs.de -e ap --plugins-detection mixed

Password brute force attack

  • wpscan --url opfer.sec-labs.de -e u --passwords /path/to/password_file.txt