Wordpress Attacks
Discovery/Footprinting
User-agent: *
Disallow: /wp-admin/
Allow: /wp-admin/admin-ajax.php
Disallow: /wp-content/uploads/wpforms/
Sitemap: https://inlanefreight.local/wp-sitemap.xmlEnumeration
curl -s https://blog.inlanefreight.local | grep WordPress<meta name="generator" content="WordPress 5.8" /curl -s https://wehost.co.in/ | grep themescurl -s https://wehost.co.in/ | grep pluginsEnumerating Users
WPScan
Attacking WordPress
Login Bruteforce
Code Execution

PHP Meterpreter shell
Last updated

